9.3
CVSSv2

CVE-2015-2520

Published: 09/09/2015 Updated: 12/10/2018
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 935
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Microsoft Excel 2007 SP3, Excel 2010 SP2, Excel for Mac 2011 and 2016, Office Compatibility Pack SP3, and Excel Viewer allow remote malicious users to execute arbitrary code via a crafted Office document, aka "Microsoft Office Memory Corruption Vulnerability."

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft excel 2010

microsoft excel 2011

microsoft excel 2016

microsoft office compatibility pack

microsoft excel 2013

microsoft excel 2007

microsoft excel viewer

Exploits

Source: codegooglecom/p/google-security-research/issues/detail?id=464 The following crash was observed in Microsoft Office 2007 with Microsoft Office File Validation Add-In disabled and Application Verifier enabled for testing and reproduction This bug did not reproduce in Office 2010 or 2013 Attached files: Original File: 1105668828 ...