CyberSec.Space Logo
Back to CVE Browser

CVE-2010-0263

CRITICAL
9.3
CVSS Severity Score
EPSS Score0.1240%
EPSS Percentile20.86th
PublishedMar 10, 2010
Last ModifiedApr 29, 2026

Vulnerability Description

Microsoft Office Excel 2007 SP1 and SP2; Office 2008 for Mac; Open XML File Format Converter for Mac; Office Excel Viewer SP1 and SP2; Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats SP1 and SP2; and Office SharePoint Server 2007 SP1 and SP2 do not validate ZIP headers during decompression of Open XML (.XLSX) documents, which allows remote attackers to execute arbitrary code via a crafted document that triggers access to uninitialized memory locations, aka "Microsoft Office Excel XLSX File Parsing Code Execution Vulnerability."

Affected Platforms (CPE)

πŸ“¦
Microsoft

Excel

= 2002
πŸ“¦
Microsoft

Excel

= 2003
πŸ“¦
Microsoft

Excel

= 2007
πŸ“¦
Microsoft

Excel

= 2007
πŸ“¦
Microsoft

Office

= 2004
πŸ“¦
Microsoft

Office

= 2008
πŸ“¦
Microsoft

Office Compatibility Pack

= 2007
πŸ“¦
Microsoft

Office Compatibility Pack

= 2007
πŸ“¦
Microsoft

Office Excel Viewer

All versions
πŸ“¦
Microsoft

Office Excel Viewer

All versions
πŸ“¦
Microsoft

Office Sharepoint Server

= 2007
πŸ“¦
Microsoft

Office Sharepoint Server

= 2007
πŸ“¦
Microsoft

Office Sharepoint Server

= 2007
πŸ“¦
Microsoft

Office Sharepoint Server

= 2007
πŸ“¦
Microsoft

Open Xml File Format Converter

All versions

References & Advisories

Related Vulnerabilities