Remote Code Execution Vulnerability in Microsoft PowerPoint Products
CVE-2011-0655

Currently unrated

Key Information:

Vendor
Microsoft
Vendor
CVE Published:
13 April 2011

Summary

Microsoft PowerPoint products including various versions for both Windows and Mac exhibit a vulnerability due to improper validation of TimeColorBehaviorContainer Floating Point records. This flaw allows remote attackers to execute arbitrary code or trigger a denial of service through specially crafted PowerPoint documents. The risk is amplified as affected users may unknowingly open the malicious files, resulting in potential exploitation.

References

EPSS Score

66% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.