Executive Summary
Informations | |||
---|---|---|---|
Name | CVE-2008-0113 | First vendor Publication | 2008-03-11 |
Vendor | Cve | Last vendor Modification | 2024-11-21 |
Security-Database Scoring CVSS v3
Cvss vector : N/A | |||
---|---|---|---|
Overall CVSS Score | NA | ||
Base Score | NA | Environmental Score | NA |
impact SubScore | NA | Temporal Score | NA |
Exploitabality Sub Score | NA | ||
Calculate full CVSS 3.0 Vectors scores |
Security-Database Scoring CVSS v2
Cvss vector : (AV:N/AC:M/Au:N/C:C/I:C/A:C) | |||
---|---|---|---|
Cvss Base Score | 9.3 | Attack Range | Network |
Cvss Impact Score | 10 | Attack Complexity | Medium |
Cvss Expoit Score | 8.6 | Authentication | None Required |
Calculate full CVSS 2.0 Vectors scores |
Detail
Unspecified vulnerability in Microsoft Office Excel Viewer 2003 up to SP3 allows user-assisted remote attackers to execute arbitrary code via an Excel document with malformed cell comments that trigger memory corruption from an "allocation error," aka "Microsoft Office Cell Parsing Memory Corruption Vulnerability." |
Original Source
Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-0113 |
CWE : Common Weakness Enumeration
% | Id | Name |
---|---|---|
100 % | CWE-94 | Failure to Control Generation of Code ('Code Injection') |
OVAL Definitions
Definition Id: oval:org.mitre.oval:def:5421 | |||
Oval ID: | oval:org.mitre.oval:def:5421 | ||
Title: | Microsoft Office Cell Parsing Memory Corruption Vulnerability | ||
Description: | Unspecified vulnerability in Microsoft Office Excel Viewer 2003 up to SP3 allows user-assisted remote attackers to execute arbitrary code via an Excel document with malformed cell comments that trigger memory corruption from an "allocation error," aka "Microsoft Office Cell Parsing Memory Corruption Vulnerability." | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2008-0113 | Version: | 3 |
Platform(s): | Microsoft Windows 2000 Microsoft Windows XP Microsoft Windows Server 2003 | Product(s): | Microsoft Word Viewer Microsoft Excel Viewer |
Definition Synopsis: | |||
CPE : Common Platform Enumeration
Type | Description | Count |
---|---|---|
Application | 1 |
ExploitDB Exploits
id | Description |
---|---|
2008-03-30 | Microsoft Office XP SP3 PPT File Buffer Overflow Exploit (ms08-016) |
Open Source Vulnerability Database (OSVDB)
Id | Description |
---|---|
42708 | Microsoft Office Excel Document (XLS) Cell Record Rebuilding Memory Corruption |
Information Assurance Vulnerability Management (IAVM)
Date | Description |
---|---|
2008-03-13 | IAVM : 2008-A-0014 - Microsoft Office Remote Code Execution Vulnerabilities Severity : Category II - VMSKEY : V0015761 |
Snort® IPS/IDS
Date | Description |
---|---|
2014-01-10 | Microsoft Office PowerPoint malformed shapeid arbitrary code execution attempt RuleID : 26663 - Revision : 3 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office PowerPoint malformed shapeid arbitrary code execution attempt RuleID : 25587 - Revision : 6 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office PowerPoint malformed shapeid arbitrary code execution attempt RuleID : 18514 - Revision : 15 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office PowerPoint malformed shapeid arbitrary code execution attempt RuleID : 13572 - Revision : 22 - Type : FILE-OFFICE |
Nessus® Vulnerability Scanner
Date | Description |
---|---|
2010-10-20 | Name : An application installed on the remote Mac OS X host is affected by multiple ... File : macosx_ms_office_mar2008.nasl - Type : ACT_GATHER_INFO |
2008-03-11 | Name : Arbitrary code can be executed on the remote host through Microsoft Office. File : smb_nt_ms08-016.nasl - Type : ACT_GATHER_INFO |
Sources (Detail)
Alert History
Date | Informations |
---|---|
2024-11-28 23:14:50 |
|
2024-11-28 12:14:30 |
|
2021-05-04 12:06:56 |
|
2021-04-22 01:07:25 |
|
2020-05-23 00:21:04 |
|
2019-03-18 12:01:35 |
|
2018-10-16 00:19:24 |
|
2018-10-13 00:22:38 |
|
2017-09-29 09:23:21 |
|
2016-04-26 16:59:29 |
|
2014-02-17 10:43:20 |
|
2013-11-11 12:37:49 |
|
2013-05-11 00:06:13 |
|