Vulnerabilities > Microsoft > Office > Medium

DATE CVE VULNERABILITY TITLE RISK
2006-10-10 CVE-2006-3868 Remote Code Execution vulnerability in Microsoft Office Smart Tag
Unspecified vulnerability in Microsoft Office XP and 2003 allows remote user-assisted attackers to execute arbitrary code via a malformed Smart Tag.
network
high complexity
microsoft
5.1
2006-10-10 CVE-2006-2387 Remote Code Execution vulnerability in Microsoft Excel DATETIME
Unspecified vulnerability in Microsoft Excel 2000, 2002, 2003, 2004 for Mac, v.X for Mac, Excel Viewer 2003, and Microsoft Works Suite 2004 through 2006 allows user-assisted attackers to execute arbitrary code via a crafted DATETIME record in an XLS file, a different vulnerability than CVE-2006-3867 and CVE-2006-3875.
network
high complexity
microsoft
5.1
2006-07-10 CVE-2006-3493 Unspecified vulnerability in Microsoft Office 2000/2003/Xp
Buffer overflow in LsCreateLine function (mso_203) in mso.dll and mso9.dll, as used by Microsoft Word and possibly other products in Microsoft Office 2003, 2002, and 2000, allows remote user-assisted attackers to cause a denial of service (crash) via a crafted Word DOC or other Office file type.
network
high complexity
microsoft
5.1
2006-03-14 CVE-2006-0031 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Microsoft Office
Stack-based buffer overflow in Microsoft Excel 2000, 2002, and 2003, in Microsoft Office 2000 SP3 and other packages, allows user-assisted attackers to execute arbitrary code via an Excel file with a malformed record with a modified length value, which leads to memory corruption.
network
high complexity
microsoft CWE-119
5.1
2006-03-14 CVE-2006-0030 Unspecified vulnerability in Microsoft Excel and Office
Unspecified vulnerability in Microsoft Excel 2000, 2002, and 2003, in Microsoft Office 2000 SP3 and other packages, allows user-assisted attackers to execute arbitrary code via an Excel file with a malformed graphic, which leads to memory corruption.
network
high complexity
microsoft
5.1
2006-03-14 CVE-2006-0029 Unspecified vulnerability in Microsoft Excel and Office
Unspecified vulnerability in Microsoft Excel 2000, 2002, and 2003, in Microsoft Office 2000 SP3 and other packages, allows user-assisted attackers to execute arbitrary code via an Excel file with a malformed description, which leads to memory corruption.
network
high complexity
microsoft
5.1
2006-03-14 CVE-2006-0028 Unspecified vulnerability in Microsoft Excel and Office
Unspecified vulnerability in Microsoft Excel 2000, 2002, and 2003, in Microsoft Office 2000 SP3 and other packages, allows user-assisted attackers to execute arbitrary code via a BIFF parsing format file containing malformed BOOLERR records that lead to memory corruption, probably involving invalid pointers.
network
high complexity
microsoft
5.1
2006-02-14 CVE-2006-0004 Remote Information Disclosure vulnerability in Microsoft Office 2000
Microsoft PowerPoint 2000 in Office 2000 SP3 has an interaction with Internet Explorer that allows remote attackers to obtain sensitive information via a PowerPoint presentation that attempts to access objects in the Temporary Internet Files Folder (TIFF).
network
low complexity
microsoft
5.0
2002-08-12 CVE-2002-0617 Unspecified vulnerability in Microsoft Excel and Office
The Macro Security Model in Microsoft Excel 2000 and 2002 for Windows allows remote attackers to execute code by creating a hyperlink on a drawing shape in a source workbook that points to a destination workbook containing an autoexecute macro, aka "Hyperlinked Excel Workbook Macro Bypass."
network
high complexity
microsoft
5.1
2002-08-12 CVE-2002-0616 Unspecified vulnerability in Microsoft Excel and Office
The Macro Security Model in Microsoft Excel 2000 and 2002 for Windows allows remote attackers to execute code by attaching an inline macro to an object within an Excel workbook, aka the "Excel Inline Macros Vulnerability."
network
high complexity
microsoft
5.1