← Back

CVE-2007-0028

nvd nist
Published: Jan 9, 2007Modified: Apr 23, 2026

JSON object

Loading...
9.3
Vector
AV:N/AC:M/Au:N/C:C/I:C/A:C
Exploitability: 8.6 / Impact: 10.0
Source: NVD

Description

Microsoft Excel 2000, 2002, 2003, Viewer 2003, Office 2004 for Mac, and Office v.X for Mac does not properly handle certain opcodes, which allows user-assisted remote attackers to execute arbitrary code via a crafted XLS file, which results in an "Improper Memory Access Vulnerability." NOTE: an early disclosure of this issue used CVE-2006-3432, but only CVE-2007-0028 should be used.

Affected (11)

4 products
Excel
Office
Excel Viewer
Works
Configuration A
2 vulnerable
Vulnerable SoftwareAffected Versions
Version 2000
Version 2000 sp3
Configuration B
2 vulnerable
Vulnerable SoftwareAffected Versions
Version 2002
Version xp sp3
Configuration C
2 vulnerable
Vulnerable SoftwareAffected Versions
Version 2003
Version 2003 sp2
Configuration D
3 vulnerable
Vulnerable SoftwareAffected Versions
Version 2003
Microsoft
Version 2004
Version 2005
Configuration E
2 vulnerable
Vulnerable SoftwareAffected Versions
Microsoft
Version 2004
Version v.x

References (24)

Source: secure@microsoft.com
Vendor Advisory
Source: secure@microsoft.com
Source: secure@microsoft.com
PatchUS Government Resource
Source: secure@microsoft.com
Source: secure@microsoft.com
Source: secure@microsoft.com
US Government Resource
Source: secure@microsoft.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
PatchUS Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
US Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.