CVE-2010-0263
published 2010-03-10CVE-2010-0263: Microsoft Office Excel 2007 SP1 and SP2; Office 2008 for Mac; Open XML File Format Converter for Mac; Office Excel Viewer SP1 and SP2; Office Compatibility…
PriorityP356critical9.3CVSS 2.0
AVNACMAuNCCICAC
EPSS
25.69%
97.7th percentile
Microsoft Office Excel 2007 SP1 and SP2; Office 2008 for Mac; Open XML File Format Converter for Mac; Office Excel Viewer SP1 and SP2; Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats SP1 and SP2; and Office SharePoint Server 2007 SP1 and SP2 do not validate ZIP headers during decompression of Open XML (.XLSX) documents, which allows remote attackers to execute arbitrary code via a crafted document that triggers access to uninitialized memory locations, aka "Microsoft Office Excel XLSX File Parsing Code Execution Vulnerability."
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| microsoft | excel | — | — |
| microsoft | excel | — | — |
| microsoft | excel | — | — |
| microsoft | office | — | — |
| microsoft | office | — | — |
| microsoft | office_compatibility_pack | — | — |
| microsoft | office_sharepoint_server | — | — |
Detection & IOCsextracted from sources · hover to see the quote
- →CVE-2010-0263 is triggered when a user opens a crafted .XLSX (Open XML) document with invalid/crafted ZIP headers, leading to access of uninitialized memory and arbitrary code execution — detection should focus on malformed XLSX files delivered via email or web. ↗
- →Attackers may harvest Excel document metadata from publicly accessible web servers to identify vulnerable software versions and users, then launch targeted spear-phishing campaigns with malicious XLSX files. ↗
- →Automated attacks could read document metadata from a target's web site and send the appropriate malicious Microsoft Excel document — monitor for bulk XLSX downloads from organizational web servers as a precursor indicator. ↗
- ·The vulnerability affects Microsoft Office Excel 2007 SP1 and SP2, Office 2008 for Mac, Open XML File Format Converter for Mac, Office Excel Viewer SP1 and SP2, Office Compatibility Pack for Word/Excel/PowerPoint 2007 File Formats SP1 and SP2, and Office SharePoint Server 2007 SP1 and SP2 — detection and patching scope must cover all these products. ↗
- ·The Nessus detection plugin (45021) for MS10-017 is a credentialed check, meaning unauthenticated scanning will not detect this vulnerability — ensure credentialed scans are configured. ↗
- ·CVE-2010-0263 was disclosed to Microsoft on July 14, 2009, and was only patched in March 2010 — a significant window of exposure existed prior to the patch being available. ↗
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
http://www.securityfocus.com/archive/1/509979/100/0/threadedhttp://www.securitytracker.com/id?1023698http://www.us-cert.gov/cas/techalerts/TA10-068A.htmlhttp://www.zerodayinitiative.com/advisories/ZDI-10-025/https://docs.microsoft.com/en-us/security-updates/securitybulletins/2010/ms10-017https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8407http://www.securityfocus.com/archive/1/509979/100/0/threadedhttp://www.securitytracker.com/id?1023698http://www.us-cert.gov/cas/techalerts/TA10-068A.htmlhttp://www.zerodayinitiative.com/advisories/ZDI-10-025/https://docs.microsoft.com/en-us/security-updates/securitybulletins/2010/ms10-017https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8407
2010-03-10
Published