Vulnerabilities > CVE-2008-0113 - Unspecified vulnerability in Microsoft Excel Viewer 2003
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
Unspecified vulnerability in Microsoft Office Excel Viewer 2003 up to SP3 allows user-assisted remote attackers to execute arbitrary code via an Excel document with malformed cell comments that trigger memory corruption from an "allocation error," aka "Microsoft Office Cell Parsing Memory Corruption Vulnerability."
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description | Microsoft Office XP SP3 PPT File Buffer Overflow Exploit (ms08-016). CVE-2008-0113,CVE-2008-0118. Local exploit for windows platform |
id | EDB-ID:5320 |
last seen | 2016-01-31 |
modified | 2008-03-30 |
published | 2008-03-30 |
reporter | Marsu |
source | https://www.exploit-db.com/download/5320/ |
title | Microsoft Office XP SP3 - PPT File Buffer Overflow Exploit MS08-016 |
Nessus
NASL family | Windows : Microsoft Bulletins |
NASL id | SMB_NT_MS08-016.NASL |
description | The remote host is running a version of Microsoft Office that is subject to various flaws that could allow arbitrary code to be run. An attacker may use this to execute arbitrary code on this host. To succeed, the attacker would have to send a rogue file to a user of the remote computer and have it open it with Microsoft Office. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 31415 |
published | 2008-03-11 |
reporter | This script is Copyright (C) 2008-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/31415 |
title | MS08-016: Vulnerabilities in Microsoft Office Could Allow Remote Code Execution (949030) |
code |
|
Oval
accepted | 2011-11-21T04:13:11.425-05:00 | ||||||||||||
class | vulnerability | ||||||||||||
contributors |
| ||||||||||||
definition_extensions |
| ||||||||||||
description | Unspecified vulnerability in Microsoft Office Excel Viewer 2003 up to SP3 allows user-assisted remote attackers to execute arbitrary code via an Excel document with malformed cell comments that trigger memory corruption from an "allocation error," aka "Microsoft Office Cell Parsing Memory Corruption Vulnerability." | ||||||||||||
family | windows | ||||||||||||
id | oval:org.mitre.oval:def:5421 | ||||||||||||
status | accepted | ||||||||||||
submitted | 2008-03-11T14:47:00 | ||||||||||||
title | Microsoft Office Cell Parsing Memory Corruption Vulnerability | ||||||||||||
version | 9 |
References
- http://marc.info/?l=bugtraq&m=120585858807305&w=2
- http://marc.info/?l=bugtraq&m=120585858807305&w=2
- http://marc.info/?l=bugtraq&m=120585858807305&w=2
- http://marc.info/?l=bugtraq&m=120585858807305&w=2
- http://secunia.com/advisories/29321
- http://secunia.com/advisories/29321
- http://www.securityfocus.com/archive/1/489415/100/0/threaded
- http://www.securityfocus.com/archive/1/489415/100/0/threaded
- http://www.securitytracker.com/id?1019578
- http://www.securitytracker.com/id?1019578
- http://www.us-cert.gov/cas/techalerts/TA08-071A.html
- http://www.us-cert.gov/cas/techalerts/TA08-071A.html
- http://www.vupen.com/english/advisories/2008/0848/references
- http://www.vupen.com/english/advisories/2008/0848/references
- http://www.zerodayinitiative.com/advisories/ZDI-08-008
- http://www.zerodayinitiative.com/advisories/ZDI-08-008
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2008/ms08-016
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2008/ms08-016
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5421
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5421