Vulnerabilities > CVE-2012-5672 - Denial of Service vulnerability in Microsoft Excel, Excel Viewer and Office

047910
CVSS 4.3 - MEDIUM
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
microsoft
exploit available

Summary

Microsoft Excel Viewer (aka Xlview.exe) and Excel in Microsoft Office 2007 (aka Office 12) allow remote attackers to cause a denial of service (read access violation and application crash) via a crafted spreadsheet file, as demonstrated by a .xls file with battery voltage data.

Vulnerable Configurations

Part Description Count
Application
Microsoft
3

Exploit-Db

descriptionMicrosoft Office Excel Denial of Service Vulnerability. CVE-2012-5672. Dos exploit for windows platform
idEDB-ID:37980
last seen2016-02-04
modified2012-10-11
published2012-10-11
reporterJean Pascal Pereira
sourcehttps://www.exploit-db.com/download/37980/
titleMicrosoft Office Excel Denial of Service Vulnerability

Seebug

bulletinFamilyexploit
descriptionCVE ID: CVE-2012-5672 Microsoft Office是一款微软开发的流行的办公软件套件。 Microsoft Office 2007中的Microsoft Excel Viewer (Xlview.exe)和Excel处理特制的.xls文件存在读访问冲突,允许攻击者利用漏洞使应用程序崩溃。 0 Microsoft Office 2007 厂商解决方案 目前没有详细解决方案提供: http://www.microsoft.com
idSSV:60448
last seen2017-11-19
modified2012-10-30
published2012-10-30
reporterRoot
titleMicrosoft Excel Viewer/Excel xls文件内存破坏漏洞