Vulnerability Details CVE-2010-3238
Microsoft Excel 2002 SP3 and 2003 SP3, and Office 2004 for Mac, does not properly validate binary file-format information, which allows remote attackers to execute arbitrary code via a crafted Excel document, aka "Negative Future Function Vulnerability."
Exploit prediction scoring system (EPSS) score
EPSS Score 0.563
EPSS Ranking 98.0%
CVSS Severity
CVSS v2 Score 9.3
Products affected by CVE-2010-3238
-
cpe:2.3:a:microsoft:excel:2002
-
cpe:2.3:a:microsoft:excel:2003
-
cpe:2.3:a:microsoft:office:2004