Vulnerability Details CVE-2006-3431
Buffer overflow in certain Asian language versions of Microsoft Excel might allow user-assisted attackers to execute arbitrary code via a crafted STYLE record in a spreadsheet that triggers the overflow when the user attempts to repair the document or selects the "Style" option, as demonstrated by nanika.xls. NOTE: Microsoft has confirmed to CVE via e-mail that this is different than the other Excel vulnerabilities announced before 20060707, including CVE-2006-3059 and CVE-2006-3086.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.73
EPSS Ranking 98.8%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2006-3431
-
cpe:2.3:a:microsoft:excel:-
-
cpe:2.3:a:microsoft:excel:2.0
-
cpe:2.3:a:microsoft:excel:2.102.1
-
cpe:2.3:a:microsoft:excel:2.102.2
-
cpe:2.3:a:microsoft:excel:2.102.3
-
cpe:2.3:a:microsoft:excel:2.102.4
-
cpe:2.3:a:microsoft:excel:2.103
-
cpe:2.3:a:microsoft:excel:2.103.1
-
cpe:2.3:a:microsoft:excel:2.103.2
-
cpe:2.3:a:microsoft:excel:2.103.3
-
cpe:2.3:a:microsoft:excel:2.103.4
-
cpe:2.3:a:microsoft:excel:2.104
-
cpe:2.3:a:microsoft:excel:2.104.1
-
cpe:2.3:a:microsoft:excel:2.104.2
-
cpe:2.3:a:microsoft:excel:2.105
-
cpe:2.3:a:microsoft:excel:2.105.1
-
cpe:2.3:a:microsoft:excel:2.105.2
-
cpe:2.3:a:microsoft:excel:2.105.3
-
cpe:2.3:a:microsoft:excel:2.105.4
-
cpe:2.3:a:microsoft:excel:2.106
-
cpe:2.3:a:microsoft:excel:2.106.1
-
cpe:2.3:a:microsoft:excel:2.106.2
-
cpe:2.3:a:microsoft:excel:2.106.3
-
cpe:2.3:a:microsoft:excel:2.107
-
cpe:2.3:a:microsoft:excel:2.107.1
-
cpe:2.3:a:microsoft:excel:2.107.2
-
cpe:2.3:a:microsoft:excel:2.107.3
-
cpe:2.3:a:microsoft:excel:2000
-
cpe:2.3:a:microsoft:excel:2001
-
cpe:2.3:a:microsoft:excel:2002
-
cpe:2.3:a:microsoft:excel:2003
-
cpe:2.3:a:microsoft:excel:2004
-
cpe:2.3:a:microsoft:excel:2007
-
cpe:2.3:a:microsoft:excel:2010
-
cpe:2.3:a:microsoft:excel:2013
-
cpe:2.3:a:microsoft:excel:2016
-
cpe:2.3:a:microsoft:excel:2019
-
cpe:2.3:a:microsoft:excel:3.0
-
cpe:2.3:a:microsoft:excel:4.0
-
cpe:2.3:a:microsoft:excel:95
-
cpe:2.3:a:microsoft:excel:97