CVE-2010-0261
published 2010-03-10CVE-2010-0261: Heap-based buffer overflow in Microsoft Office Excel 2007 SP1 and SP2 and Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats SP1 and…
PriorityP258critical9.3CVSS 2.0
AVNACMAuNCCICAC
EPSS
23.09%
97.5th percentile
Heap-based buffer overflow in Microsoft Office Excel 2007 SP1 and SP2 and Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats SP1 and SP2 allows remote attackers to execute arbitrary code via a crafted spreadsheet in which "a MDXSET record is broken up into several records," aka "Microsoft Office Excel MDXSET Record Heap Overflow Vulnerability."
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| microsoft | excel | — | — |
| microsoft | excel | — | — |
| microsoft | excel | — | — |
| microsoft | office | — | — |
| microsoft | office | — | — |
| microsoft | office_compatibility_pack | — | — |
| microsoft | office_sharepoint_server | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=861http://www.securitytracker.com/id?1023698http://www.us-cert.gov/cas/techalerts/TA10-068A.htmlhttps://docs.microsoft.com/en-us/security-updates/securitybulletins/2010/ms10-017https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8479http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=861http://www.securitytracker.com/id?1023698http://www.us-cert.gov/cas/techalerts/TA10-068A.htmlhttps://docs.microsoft.com/en-us/security-updates/securitybulletins/2010/ms10-017https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8479
2010-03-10
Published