Executive Summary
Informations | |||
---|---|---|---|
Name | CVE-2011-0980 | First vendor Publication | 2011-02-10 |
Vendor | Cve | Last vendor Modification | 2024-11-21 |
Security-Database Scoring CVSS v3
Cvss vector : N/A | |||
---|---|---|---|
Overall CVSS Score | NA | ||
Base Score | NA | Environmental Score | NA |
impact SubScore | NA | Temporal Score | NA |
Exploitabality Sub Score | NA | ||
Calculate full CVSS 3.0 Vectors scores |
Security-Database Scoring CVSS v2
Cvss vector : (AV:N/AC:M/Au:N/C:C/I:C/A:C) | |||
---|---|---|---|
Cvss Base Score | 9.3 | Attack Range | Network |
Cvss Impact Score | 10 | Attack Complexity | Medium |
Cvss Expoit Score | 8.6 | Authentication | None Required |
Calculate full CVSS 2.0 Vectors scores |
Detail
Microsoft Excel 2002 SP3 and 2003 SP3, Office 2004 and 2008 for Mac, and Open XML File Format Converter for Mac do not properly parse Office Art objects, which allows remote attackers to execute arbitrary code via vectors related to a function pointer, aka "Excel Dangling Pointer Vulnerability." |
Original Source
Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0980 |
CWE : Common Weakness Enumeration
% | Id | Name |
---|---|---|
100 % | CWE-264 | Permissions, Privileges, and Access Controls |
OVAL Definitions
Definition Id: oval:org.mitre.oval:def:12018 | |||
Oval ID: | oval:org.mitre.oval:def:12018 | ||
Title: | Excel Dangling Pointer Vulnerability | ||
Description: | Microsoft Excel 2002 SP3 and 2003 SP3, Office 2004 and 2008 for Mac, and Open XML File Format Converter for Mac do not properly parse Office Art objects, which allows remote attackers to execute arbitrary code via vectors related to a function pointer, aka "Excel Dangling Pointer Vulnerability." | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-0980 | Version: | 6 |
Platform(s): | Microsoft Windows 2000 Microsoft Windows XP Microsoft Windows Server 2003 Microsoft Windows Vista Microsoft Windows Server 2008 Microsoft Windows 7 | Product(s): | Microsoft Excel 2002 Microsoft Excel 2003 |
Definition Synopsis: | |||
|
CPE : Common Platform Enumeration
Type | Description | Count |
---|---|---|
Application | 3 | |
Application | 2 | |
Application | 1 |
ExploitDB Exploits
id | Description |
---|---|
2011-11-05 | MS11-021 Microsoft Office 2007 Excel .xlb Buffer Overflow |
2011-11-02 | Microsoft Excel 2007 SP2 Buffer Overwrite Exploit |
2011-04-29 | Microsoft Office Excel Axis Properties Record Parsing Buffer Overflow PoC |
OpenVAS Exploits
Date | Description |
---|---|
2012-03-06 | Name : Microsoft SMB Transaction Parsing Remote Code Execution Vulnerability File : nvt/secpod_ms11-020_remote.nasl |
2011-04-13 | Name : Microsoft Office Excel Remote Code Execution Vulnerabilities (2489279) File : nvt/secpod_ms11-021.nasl |
2011-02-23 | Name : Microsoft Office Excel 2003 Invalid Object Type Remote Code Execution Vulnera... File : nvt/gb_ms_office_excel_art_object_code_exec_vuln.nasl |
2011-02-23 | Name : Microsoft Office Excel Axis and Art Object Parsing Remote Code Execution Vuln... File : nvt/gb_ms_office_excel_mult_code_exec_vuln.nasl |
2011-02-23 | Name : Microsoft PowerPoint 2007 OfficeArt Atom Remote Code Execution Vulnerability File : nvt/gb_ms_power_point_code_exec_vuln.nasl |
Open Source Vulnerability Database (OSVDB)
Id | Description |
---|---|
71764 | Microsoft Office Excel File Handling Dangling Pointer Remote Code Execution Microsoft Excel, Office for Mac, and Open XML File Format Converter for Mac contain a flaw related to improper parsing of office art object. The issue is triggered when the program adds the object to a linked list and trusts a function pointer of the object. This may allow a context-dependent attacker using a crafted Excel document to replace this pointer to execute arbitrary code. |
Snort® IPS/IDS
Date | Description |
---|---|
2014-01-10 | Microsoft Office Excel url unicode overflow attempt RuleID : 7002 - Revision : 20 - Type : FILE-OFFICE |
2015-01-31 | Microsoft Office Excel malformed Label record exploit attempt RuleID : 32940 - Revision : 4 - Type : FILE-OFFICE |
2015-01-06 | Microsoft Office Excel DV record buffer overflow attempt RuleID : 32625 - Revision : 3 - Type : FILE-OFFICE |
2014-07-03 | Microsoft Office Excel rtToolbarDef record integer overflow attempt RuleID : 31127 - Revision : 3 - Type : FILE-OFFICE |
2014-07-03 | Microsoft Office Excel rtToolbarDef record integer overflow attempt RuleID : 31126 - Revision : 3 - Type : FILE-OFFICE |
2014-07-03 | Microsoft Office Excel rtToolbarDef record integer overflow attempt RuleID : 31125 - Revision : 3 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Excel rtToolbarDef record integer overflow attempt RuleID : 28550 - Revision : 4 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Excel rtToolbarDef record integer overflow attempt RuleID : 28549 - Revision : 4 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Excel RealTimeData record memory corruption attempt RuleID : 28546 - Revision : 4 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Excel RealTimeData record memory corruption attempt RuleID : 28545 - Revision : 3 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Excel RealTimeData record memory corruption attempt RuleID : 28544 - Revision : 3 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Excel Workspace file FontCount record memory corruption attempt RuleID : 28103 - Revision : 4 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Excel IPMT record buffer overflow attempt RuleID : 25296 - Revision : 4 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Excel IPMT record buffer overflow attempt RuleID : 25295 - Revision : 3 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Excel IPMT record buffer overflow attempt RuleID : 25294 - Revision : 4 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Excel IPMT record buffer overflow attempt RuleID : 25293 - Revision : 6 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Excel catLabel pointer manipulation attempt RuleID : 24130 - Revision : 5 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Excel catLabel pointer manipulation attempt RuleID : 24129 - Revision : 6 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Excel rtToolbarDef record integer overflow attempt RuleID : 20534 - Revision : 12 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Excel DV record buffer overflow attempt RuleID : 18676 - Revision : 11 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Excel OBJ record invalid cmo.ot exploit attempt RuleID : 18641 - Revision : 7 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Excel malformed SupBook record attempt RuleID : 18640 - Revision : 8 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Excel CatSerRange record exploit attempt RuleID : 18639 - Revision : 12 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Excel Workspace file FontCount record memory corruption attempt RuleID : 18634 - Revision : 15 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Excel RealTimeData record memory corruption attempt RuleID : 18633 - Revision : 14 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Excel malformed Label record exploit attempt RuleID : 18632 - Revision : 19 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Excel rtToolbarDef record integer overflow attempt RuleID : 18631 - Revision : 11 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Excel rtToolbarDef record integer overflow attempt RuleID : 18630 - Revision : 11 - Type : FILE-OFFICE |
Nessus® Vulnerability Scanner
Date | Description |
---|---|
2011-04-13 | Name : An application installed on the remote Mac OS X host is affected by multiple ... File : macosx_ms_office_apr2011.nasl - Type : ACT_GATHER_INFO |
2011-04-13 | Name : Arbitrary code can be executed on the remote host through Microsoft Excel. File : smb_nt_ms11-021.nasl - Type : ACT_GATHER_INFO |
Sources (Detail)
Alert History
Date | Informations |
---|---|
2024-11-28 23:06:05 |
|
2024-11-28 12:25:00 |
|
2021-05-04 12:14:07 |
|
2021-04-22 01:15:18 |
|
2020-05-23 00:27:54 |
|
2018-10-13 00:23:04 |
|
2017-09-19 09:24:15 |
|
2016-04-26 20:35:34 |
|
2014-02-17 11:00:48 |
|
2014-01-19 21:27:37 |
|
2013-05-10 22:55:47 |
|
2013-01-15 17:19:47 |
|