Show filters
66 Total Results
Displaying 51-60 of 66
Sort by:
Attacker Value
Unknown
CVE-2006-3651
Disclosure Date: October 10, 2006 (last updated October 04, 2023)
Unspecified vulnerability in Microsoft Word 2000, 2002, and Office 2003 allows remote user-assisted attackers to execute arbitrary code via a crafted mail merge file, a different vulnerability than CVE-2006-3647 and CVE-2006-4693.
0
Attacker Value
Unknown
CVE-2005-0564
Disclosure Date: July 12, 2005 (last updated February 22, 2025)
Stack-based buffer overflow in Microsoft Word 2000 and Word 2002, and Microsoft Works Suites 2000 through 2004, might allow remote attackers to execute arbitrary code via a .doc file with long font information.
0
Attacker Value
Unknown
CVE-2005-0558
Disclosure Date: May 02, 2005 (last updated February 22, 2025)
Buffer overflow in Microsoft Word 2000, Word 2002, and Word 2003 allows remote attackers to execute arbitrary code via a crafted document.
0
Attacker Value
Unknown
CVE-2004-0573
Disclosure Date: September 28, 2004 (last updated February 22, 2025)
Buffer overflow in the converter for Microsoft WordPerfect 5.x on Office 2000, Office XP, Office 2003, and Works Suites 2001 through 2004 allows remote attackers to execute arbitrary code via a malicious document or website.
0
Attacker Value
Unknown
CVE-2003-0820
Disclosure Date: December 15, 2003 (last updated February 22, 2025)
Microsoft Word 97, 98(J), 2000, and 2002, and Microsoft Works Suites 2001 through 2004, do not properly check the length of the "Macro names" data value, which could allow remote attackers to execute arbitrary code via a buffer overflow attack.
0
Attacker Value
Unknown
CVE-2003-0821
Disclosure Date: December 15, 2003 (last updated February 22, 2025)
Microsoft Excel 97, 2000, and 2002 allows remote attackers to execute arbitrary code via a spreadsheet with a malicious XLM (Excel 4) macro that bypasses the macro security model.
0
Attacker Value
Unknown
CVE-2003-0664
Disclosure Date: October 20, 2003 (last updated February 22, 2025)
Microsoft Word 2002, 2000, 97, and 98(J) does not properly check certain properties of a document, which allows attackers to bypass the macro security model and automatically execute arbitrary macros via a malicious document.
0
Attacker Value
Unknown
CVE-2002-1143
Disclosure Date: April 11, 2003 (last updated February 22, 2025)
Microsoft Word and Excel allow remote attackers to steal sensitive information via certain field codes that insert the information when the document is returned to the attacker, as demonstrated in Word using (1) INCLUDETEXT or (2) INCLUDEPICTURE, aka "Flaw in Word Fields and Excel External Updates Could Lead to Information Disclosure."
0
Attacker Value
Unknown
CVE-2002-1056
Disclosure Date: May 16, 2002 (last updated February 22, 2025)
Microsoft Outlook 2000 and 2002, when configured to use Microsoft Word as the email editor, does not block scripts that are used while editing email messages in HTML or Rich Text Format (RTF), which could allow remote attackers to execute arbitrary scripts via an email that the user forwards or replies to.
0
Attacker Value
Unknown
CVE-2001-0628
Disclosure Date: August 14, 2001 (last updated February 22, 2025)
Microsoft Word 2000 does not check AutoRecovery (.asd) files for macros, which allows a local attacker to execute arbitrary macros with the user ID of the Word user.
0