CVE-2000-0597
Microsoft Office 2000 (Excel and PowerPoint) and PowerPoint 97 are marked as safe for scripting, which allows remote attackers to force Internet Explorer or some email clients to save files to arbitrary locations via the Visual Basic for Applications (VBA) SaveAs function, aka the "Office HTML Script" vulnerability.
- Affected products
- Internet Explorer, Office 2000, Powerpoint 97, Visual Basic For Applications
- Microsoft Excel
- = 2000
- Microsoft Powerpoint
- = 97, 2000
- Fix
- Available
- CVSS 2.0
- 7.5 HIGH
- EPSS
- 12.1% (96th percentile)
- NVD status
- Modified
- Published
- 2000-10-13
CVE-2000-0597 at NVD
No indexed exploits for CVE-2000-0597 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2000-0597 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.