7.2
CVSSv2

CVE-2000-0325

Published: 20/08/1999 Updated: 12/10/2018
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 725
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

The Microsoft Jet database engine allows an malicious user to execute commands via a database query, aka the "VBA Shell" vulnerability.

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft jet 3.5

microsoft jet 3.5.1

Exploits

# source: wwwsecurityfocuscom/bid/548/info # # A vulnerability affects Microsoft's Jet 351 and 40 driver (MSJET35DLL and MSJET40DLL) # # This vulnerability could allow an attacker to create malicious 'xls' or 'doc' files incorporating VBA shell commands When the file is opened, the shell commands contained in the file will execute ...