9.3
CVSSv2

CVE-2008-0118

Published: 11/03/2008 Updated: 12/10/2018
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 940
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Unspecified vulnerability in Microsoft Office 2000 SP3, XP SP3, 2003 SP2, Excel Viewer 2003 up to SP3, and Office 2004 for Mac allows user-assisted remote malicious users to execute arbitrary code via a crafted Office document that triggers memory corruption from an "allocation error," aka "Microsoft Office Memory Corruption Vulnerability."

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft office 2000

microsoft office xp

microsoft office 2003

microsoft office 2004

Exploits

Runs calcexe on Office XP SP3 with updates < 03/11/08 Just for fun githubcom/offensive-security/exploitdb-bin-sploits/raw/master/bin-sploits/5320tgz (2008-ms08-016tgz) Marsupilamipowa@hotmailfr # milw0rmcom [2008-03-30] ...
source: wwwsecurityfocuscom/bid/28146/info Microsoft Office is prone to a remote memory-corruption vulnerability An attacker could exploit this issue by enticing a victim to open a malicious Office file Successfully exploiting this issue would allow the attacker to execute arbitrary code in the context of the currently logged-in user ...