Vulnerabilities > Microsoft > Excel > 2003

DATE CVE VULNERABILITY TITLE RISK
2007-07-10 CVE-2007-3029 Remote Code Execution vulnerability in Microsoft Excel and Office
Unspecified vulnerability in Microsoft Excel 2002 SP3 and 2003 SP2 allows user-assisted remote attackers to execute arbitrary code via a malformed Excel file containing multiple active worksheets, which results in memory corruption.
network
microsoft
critical
9.3
2007-07-10 CVE-2007-1756 Remote Code Execution vulnerability in Microsoft Excel, Excel Viewer and Office
Microsoft Excel 2000 SP3, 2002 SP3, 2003 SP2, 2003 Viewer, and Office Excel 2007 does not properly validate version information, which allows user-assisted remote attackers to execute arbitrary code via a crafted Excel file, aka "Calculation Error Vulnerability".
network
microsoft
critical
9.3
2007-06-29 CVE-2007-3490 Remote Denial Of Service vulnerability in Microsoft Excel 2003
Unspecified vulnerability in Microsoft Excel 2003 SP2 allows remote attackers to have an unknown impact via unspecified vectors, possibly related to the sheet name, as demonstrated by 2670.xls.
network
low complexity
microsoft
7.5
2007-05-08 CVE-2007-1214 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Microsoft Excel and Excel Viewer
Microsoft Excel 2000 SP3, 2002 SP3, 2003 SP2, 2003 Viewer, and 2004 for Mac allows user-assisted remote attackers to execute arbitrary code via a crafted AutoFilter filter record in an Excel BIFF8 format XLS file, which triggers memory corruption.
network
microsoft CWE-119
6.8
2007-05-08 CVE-2007-1203 Remote Code Execution vulnerability in Microsoft Excel Set Font
Unspecified vulnerability in Microsoft Excel 2000 SP3, 2002 SP3, 2003 SP2, 2003 Viewer, 2004 for Mac, and 2007 allows user-assisted remote attackers to execute arbitrary code via a crafted set font value in an Excel file, which results in memory corruption.
network
microsoft
critical
9.3
2007-05-08 CVE-2007-0215 Remote Code Execution vulnerability in Microsoft Excel, Excel Viewer and Office
Stack-based buffer overflow in Microsoft Excel 2000 SP3, 2002 SP3, 2003 SP2, and 2003 Viewer allows user-assisted remote attackers to execute arbitrary code via a .XLS BIFF file with a malformed Named Graph record, which results in memory corruption.
network
high complexity
microsoft
7.6
2007-03-03 CVE-2007-1239 Denial Of Service vulnerability in Microsoft Excel 2003
Microsoft Excel 2003 does not properly parse .XLS files, which allows remote attackers to cause a denial of service (application crash) via a file with a (1) corrupted XML format or a (2) corrupted XLS format, which triggers a NULL pointer dereference.
network
microsoft
4.3
2007-02-03 CVE-2007-0671 Remote Code Execution vulnerability in Microsoft Office Malformed String
Unspecified vulnerability in Microsoft Excel 2000, XP, 2003, and 2004 for Mac, and possibly other Office products, allows remote user-assisted attackers to execute arbitrary code via unknown attack vectors, as demonstrated by Exploit-MSExcel.h in targeted zero-day attacks.
network
microsoft
critical
9.3
2007-01-09 CVE-2007-0031 Remote Code Execution vulnerability in Microsoft Excel Malformed Palette Record
Heap-based buffer overflow in Microsoft Excel 2000 SP3, 2002 SP3, 2003 SP2, 2004 for Mac, and v.X for Mac allows user-assisted remote attackers to execute arbitrary code via a BIFF8 spreadsheet with a PALETTE record that contains a large number of entries.
network
microsoft
critical
9.3
2007-01-09 CVE-2007-0030 Remote Code Execution vulnerability in Microsoft Excel Malformed Column Record
Microsoft Excel 2000 SP3, 2002 SP3, 2003 SP2, 2004 for Mac, and v.X for Mac allows user-assisted remote attackers to execute arbitrary code via an Excel file with an out-of-range Column field in certain BIFF8 record types, which references arbitrary memory.
network
microsoft
critical
9.3