Vulnerability Details CVE-2011-0105
Microsoft Excel 2002 SP3, Office 2004 and 2008 for Mac, and Open XML File Format Converter for Mac obtain a certain length value from an uninitialized memory location, which allows remote attackers to trigger a buffer overflow and execute arbitrary code via a crafted Excel file, aka "Excel Data Initialization Vulnerability."
Exploit prediction scoring system (EPSS) score
EPSS Score 0.894
EPSS Ranking 99.5%
CVSS Severity
CVSS v2 Score 9.3
Products affected by CVE-2011-0105
-
cpe:2.3:a:microsoft:excel:2002
-
cpe:2.3:a:microsoft:office:2004
-
cpe:2.3:a:microsoft:office:2008
-
cpe:2.3:a:microsoft:open_xml_file_format_converter:-