cbcvebase.
CVE-2010-1248
published 2010-06-08

CVE-2010-1248: Buffer overflow in Microsoft Office Excel 2002 SP3 and Office 2004 for Mac allows remote attackers to execute arbitrary code via an Excel file with a malformed…

PriorityP262critical9.3CVSS 2.0
AVNACMAuNCCICAC
EXPLOIT
EPSS
27.18%
97.8th percentile
Buffer overflow in Microsoft Office Excel 2002 SP3 and Office 2004 for Mac allows remote attackers to execute arbitrary code via an Excel file with a malformed HFPicture (0x866) record, aka "Excel HFPicture Memory Corruption Vulnerability."

Affected

2 ranges
VendorProductVersion rangeFixed in
microsoftexcel
microsoftoffice

Detection & IOCsextracted from sources · hover to see the quote

urlhttps://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/15065.rar
urlhttps://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/15019.rar
filenamemoaub-21-exploit.rar
filenameHFPicture_PoC.rar
  • Detect malformed HFPicture (record type 0x866) in Excel files; a crafted record triggers a buffer overflow leading to remote code execution.
  • Inspect Excel BIFF records for anomalous WOPT record parsing that causes heap memory corruption; targets Excel 2002 SP3.
  • Flag Excel files exploiting HFPicture record parsing for remote code execution; specifically targets Excel 2002 SP3.
  • ·Affected versions are Excel 2002 SP3 and Office 2004 for Mac; detections should be scoped accordingly.
CVEs like this are exactly what “Exploited This Week” covers.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.