Memory Corruption in Microsoft Office Products Due to ActiveX Control Search Flaw
CVE-2010-0815

Currently unrated

Key Information:

Vendor

Microsoft

Vendor
CVE Published:
12 May 2010

What is CVE-2010-0815?

The VBE6.DLL component in several versions of Microsoft Office fails to adequately search for ActiveX controls embedded in documents. This vulnerability can be exploited by remote attackers who craft specific documents, leading to the execution of arbitrary code on the target system when the document is opened. This poses serious security risks as it allows attackers to potentially compromise systems and access sensitive information.

References

EPSS Score

61% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.