Heap-Based Buffer Overflow in Microsoft Office Excel Products
CVE-2010-0260

Currently unrated

Key Information:

Vendor
Microsoft
Vendor
CVE Published:
10 March 2010

Summary

A heap-based buffer overflow vulnerability exists in Microsoft Office Excel 2007 SP1 and SP2, Office Excel Viewer SP1 and SP2, and the Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats SP1 and SP2. This flaw allows remote attackers to execute arbitrary code by sending a specially crafted spreadsheet that disrupts the handling of MDXTUPLE records. Exploitation of this vulnerability can lead to unauthorized access and control over affected systems, highlighting the importance of applying security updates.

References

EPSS Score

57% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.