9.3
CVSSv2

CVE-2011-1276

Published: 16/06/2011 Updated: 12/10/2018
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 935
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Buffer overflow in Microsoft Excel 2002 SP3, 2003 SP3, and 2007 SP2; Office 2004 and 2008 for Mac; Open XML File Format Converter for Mac; Excel Viewer SP2; and Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats SP2 allows remote malicious users to execute arbitrary code or cause a denial of service (memory corruption) via a crafted Excel spreadsheet, related to improper validation of record information, aka "Excel Buffer Overrun Vulnerability."

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft excel viewer

microsoft excel 2003

microsoft excel 2007

microsoft office 2004

microsoft office compatibility pack 2007

microsoft excel 2002

microsoft office 2008

microsoft open xml file format converter

Exploits

# Exploit Title: Excel SLYK Format Parsing Buffer Overrun Vulnerability PoC # Date: [date] # Author: webDEViL # Software Link: [download link if available] # Version: [app version] # Tested on: ALL # CVE : CVE-2011-1276 # w3bd3vil[at]gmail[dot]com # twittercom/w3bd3vil open (FILE, '>>CVE-2011-1276slk'); print FILE "ID;P\n"; print FILE "P; ...
Excel SLYK format parsing buffer overrun proof of concept denial of service exploit ...