9.3
CVSSv2

CVE-2009-0565

Published: 10/06/2009 Updated: 12/10/2018
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 940
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Buffer overflow in Microsoft Office Word 2000 SP3, 2002 SP3, and 2007 SP1 and SP2; Microsoft Office for Mac 2004 and 2008; Open XML File Format Converter for Mac; and Microsoft Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats SP1 and SP2 allows remote malicious users to execute arbitrary code via a Word document with a malformed record that triggers memory corruption, aka "Word Buffer Overflow Vulnerability."

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft office word 2003

microsoft office word 2007

microsoft office 2004

microsoft office 2008

microsoft office word viewer

microsoft office compatibility pack for word excel ppt 2007

microsoft office word 2000

microsoft office word viewer 2003

microsoft open xml file format converter

microsoft office word 2002

Exploits

## # $Id: ms09-027 10477 2011-04-13 11:59:02Z mc $ ## ## # This file is not part of the Metasploit Framework and may not be subject to # redistribution and commercial restrictions ## #TODO some testing to find the real banned characters and maxlen # add those parameters to the rb file # drop in appropriate directory # ulimit -s 100000 is requi ...
#MS Word Record Parsing Buffer Overflow(MS-09-027) #Vulnerble application MS office 2003 #Tested on XP SP2 - MS Ofice 2003 v 1156045606 #Bug Found By Wushi of team509 #!/usr/bin/python import sys import zlib #windows/exec - CMD=calcexe shellcode = ( b"\xDB\xDF\xD9\x74\x24\xF4\x58\x2B\xC9\xB1\x33\xBA" b"\x4C\xA8\x75\x76\x83\xC0\x04\x31\x50\x ...