← Back

CVE-2011-1972

nvd nist
Published: Aug 10, 2011Modified: Apr 29, 2026

JSON object

Loading...
9.3
Vector
AV:N/AC:M/Au:N/C:C/I:C/A:C
Exploitability: 8.6 / Impact: 10.0
Source: NVD

Description

Microsoft Visio 2003 SP3, 2007 SP2, and 2010 Gold and SP1 does not properly validate objects in memory during Visio file parsing, which allows remote attackers to execute arbitrary code via a crafted file, aka "pStream Release RCE Vulnerability."

Affected (6)

Products: Microsoft: Visio
1 product
Visio
Configuration A
6 vulnerable
Vulnerable SoftwareAffected Versions
Microsoft
Version 2003 sp3
Version 2007 sp2
Version 2010
Version 2010
Version 2010 sp1
Version 2010 sp1

Timeline

No history available yet.