Vulnerabilities > Microsoft > Powerpoint > 2000

DATE CVE VULNERABILITY TITLE RISK
2009-04-03 CVE-2009-0556 Code Injection vulnerability in Microsoft Office Powerpoint and Powerpoint
Microsoft Office PowerPoint 2000 SP3, 2002 SP3, and 2003 SP3, and PowerPoint in Microsoft Office 2004 for Mac, allows remote attackers to execute arbitrary code via a PowerPoint file with an OutlineTextRefAtom containing an an invalid index value that triggers memory corruption, as exploited in the wild in April 2009 by Exploit:Win32/Apptom.gen, aka "Memory Corruption Vulnerability."
network
microsoft CWE-94
critical
9.3
2007-02-03 CVE-2007-0671 Remote Code Execution vulnerability in Microsoft Office Malformed String
Unspecified vulnerability in Microsoft Excel 2000, XP, 2003, and 2004 for Mac, and possibly other Office products, allows remote user-assisted attackers to execute arbitrary code via unknown attack vectors, as demonstrated by Exploit-MSExcel.h in targeted zero-day attacks.
network
microsoft
critical
9.3
2006-10-10 CVE-2006-3877 Code Injection vulnerability in Microsoft products
Unspecified vulnerability in PowerPoint in Microsoft Office 2000, Office 2002, Office 2003, Office 2004 for Mac, and Office v.X for Mac allows user-assisted attackers to execute arbitrary code via an unspecified "crafted file," a different vulnerability than CVE-2006-3435, CVE-2006-4694, and CVE-2006-3876.
network
microsoft CWE-94
critical
9.3
2006-08-09 CVE-2006-3449 Remote Code Execution vulnerability in Microsoft Powerpoint
Unspecified vulnerability in Microsoft PowerPoint 2000 through 2003, possibly a buffer overflow, allows user-assisted remote attackers to execute arbitrary commands via a malformed record in the BIFF file format used in a PPT file, a different issue than CVE-2006-1540, aka "Microsoft PowerPoint Malformed Record Vulnerability."
network
low complexity
microsoft
7.5
2006-07-14 CVE-2006-3590 Remote Code Execution vulnerability in Microsoft Powerpoint 2000/2002/2003
mso.dll, as used by Microsoft PowerPoint 2000 through 2003, allows user-assisted attackers to execute arbitrary commands via a malformed shape container in a PPT file that leads to memory corruption, as exploited by Trojan.PPDropper.B, a different issue than CVE-2006-1540 and CVE-2006-3493.
network
high complexity
microsoft
5.1
2006-06-13 CVE-2006-0022 Remote Code Execution vulnerability in Microsoft PowerPoint Malformed Record
Unspecified vulnerability in Microsoft PowerPoint in Microsoft Office 2000 SP3, Office XP SP3, Office 2003 SP1 and SP2, Office 2004 for Mac, and v.
network
high complexity
microsoft
7.6
2001-10-30 CVE-2001-0718 Unspecified vulnerability in Microsoft Excel and Powerpoint
Vulnerability in (1) Microsoft Excel 2002 and earlier and (2) Microsoft PowerPoint 2002 and earlier allows attackers to bypass macro restrictions and execute arbitrary commands by modifying the data stream in the document.
network
low complexity
microsoft
7.5
2001-02-12 CVE-2001-0005 Unspecified vulnerability in Microsoft Powerpoint 2000
Buffer overflow in the parsing mechanism of the file loader in Microsoft PowerPoint 2000 allows attackers to execute arbitrary commands.
local
high complexity
microsoft
6.2
2000-10-20 CVE-2000-0765 Unspecified vulnerability in Microsoft Excel, Powerpoint and Word
Buffer overflow in the HTML interpreter in Microsoft Office 2000 allows an attacker to execute arbitrary commands via a long embedded object tag, aka the "Microsoft Office HTML Object Tag" vulnerability.
network
high complexity
microsoft
5.1
2000-05-11 CVE-2000-0419 Unspecified vulnerability in Microsoft products
The Office 2000 UA ActiveX Control is marked as "safe for scripting," which allows remote attackers to conduct unauthorized activities via the "Show Me" function in Office Help, aka the "Office 2000 UA Control" vulnerability.
network
low complexity
microsoft
7.5