Vulnerability in Microsoft Publisher 2003 SP3 Allows Remote Code Execution
CVE-2013-1323

Currently unrated

Key Information:

Vendor

Microsoft

Status
Vendor
CVE Published:
15 May 2013

What is CVE-2013-1323?

Microsoft Publisher 2003 SP3 is prone to a vulnerability due to improper handling of NULL values for unspecified data items. This weakness can be exploited by remote attackers to execute arbitrary code by crafting a malicious Publisher file. Successful exploitation could take control of the affected system, allowing the attacker unauthorized access and execution of commands.

References

EPSS Score

54% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.