CyberSec.Space Logo
返回 CVE 瀏覽器

CVE-2010-0263

CRITICAL
9.3
CVSS Severity Score
EPSS Score0.1240%
EPSS Percentile20.86th
Published2010年3月10日
Last Modified2026年4月29日

Vulnerability Description

Microsoft Office Excel 2007 SP1 and SP2; Office 2008 for Mac; Open XML File Format Converter for Mac; Office Excel Viewer SP1 and SP2; Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats SP1 and SP2; and Office SharePoint Server 2007 SP1 and SP2 do not validate ZIP headers during decompression of Open XML (.XLSX) documents, which allows remote attackers to execute arbitrary code via a crafted document that triggers access to uninitialized memory locations, aka "Microsoft Office Excel XLSX File Parsing Code Execution Vulnerability."

Affected Platforms (CPE)

📦
Microsoft

Excel

= 2002
📦
Microsoft

Excel

= 2003
📦
Microsoft

Excel

= 2007
📦
Microsoft

Excel

= 2007
📦
Microsoft

Office

= 2004
📦
Microsoft

Office

= 2008
📦
Microsoft

Office Compatibility Pack

= 2007
📦
Microsoft

Office Compatibility Pack

= 2007
📦
Microsoft

Office Excel Viewer

All versions
📦
Microsoft

Office Excel Viewer

All versions
📦
Microsoft

Office Sharepoint Server

= 2007
📦
Microsoft

Office Sharepoint Server

= 2007
📦
Microsoft

Office Sharepoint Server

= 2007
📦
Microsoft

Office Sharepoint Server

= 2007
📦
Microsoft

Open Xml File Format Converter

All versions

References & Advisories

相關漏洞威脅