5.1
CVSSv2

CVE-2006-3014

Published: 22/06/2006 Updated: 12/10/2018
CVSS v2 Base Score: 5.1 | Impact Score: 6.4 | Exploitability Score: 4.9
VMScore: 515
Vector: AV:N/AC:H/Au:N/C:P/I:P/A:P

Vulnerability Summary

Microsoft Excel allows user-assisted malicious users to execute arbitrary javascript and redirect users to arbitrary sites via an Excel spreadsheet with an embedded Shockwave Flash Player ActiveX Object, which is automatically executed when the user opens the spreadsheet.

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft excel

Exploits

source: wwwsecurityfocuscom/bid/18583/info Microsoft Office is prone to a weakness that may allow remote attackers to execute arbitrary script code contained in Shockwave Flash Objects without first requiring confirmation from users A successful attack may allow attackers to access sensitive information and potentially execute malicious ...