CVE-2011-0104

Scores

EPSS

0.769medium76.9%
0%20%40%60%80%100%

Percentile: 76.9%

CVSS

9.3critical2.0
0246810

CVSS Score: 9.3/10

All CVSS Scores

CVSS 2.0
9.3

Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Description

Microsoft Excel 2002 SP3 and 2003 SP3, Office 2004 and 2008 for Mac, and Open XML File Format Converter for Mac allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted HLink record in an Excel file, aka “Excel Buffer Overwrite Vulnerability.”

Scaner-VS 7 — a modern vulnerability management solution

Uses this database for vulnerability detection. High-speed search, cross-platform, advanced configuration audit, and flexible filtering. Suitable for organizations of any size.
Learn more about Scaner-VS 7

Sources

nvd

CWEs

CWE-119

Exploits

Exploit ID: 35573

Source: exploitdb

URL: https://www.exploit-db.com/exploits/35573

Exploit ID: CVE-2011-0104

Source: github-poc

URL: https://github.com/Sunqiz/CVE-2011-0104-reproduction

Vulnerable Software (3)

Type: Configuration

Vendor: microsoft

Product: excel

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:a:microsoft:excel:2002:sp3:*:*:*:*:*:*",      "vulnerable": true    },    {      "cpe23uri": "cpe:2.3:a:microsoft:excel:2003:sp3:*:*:*:*:*:*", ...

Source: nvd

Type: Configuration

Vendor: microsoft

Product: office

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:a:microsoft:excel:2002:sp3:*:*:*:*:*:*",      "vulnerable": true    },    {      "cpe23uri": "cpe:2.3:a:microsoft:excel:2003:sp3:*:*:*:*:*:*", ...

Source: nvd

Type: Configuration

Vendor: microsoft

Product: open_xml_file_format_converter

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:a:microsoft:excel:2002:sp3:*:*:*:*:*:*",      "vulnerable": true    },    {      "cpe23uri": "cpe:2.3:a:microsoft:excel:2003:sp3:*:*:*:*:*:*", ...

Source: nvd