CVE-2006-2389
Unspecified vulnerability in Microsoft Office 2003 SP1 and SP2, Office XP SP3, Office 2000 SP3, and other products, allows user-assisted attackers to execute arbitrary code via an Office file with a malformed property that triggers memory corruption related to record lengths, aka "Microsoft Office Property Vulnerability," a different vulnerability than CVE-2006-1316.
- Affected products
- Office 2000, Office 2003, Office Xp, Office, Office Project, Office Visio
- Microsoft Office
- = 2000, 2003, xp
- Fix
- Available
- CVSS 2.0
- 9.3 HIGH
- EPSS
- 38.8% (98th percentile)
- Weakness
- CWE-94
- NVD status
- Modified
- Published
- 2006-07-11
CVE-2006-2389 at NVD
6 known exploits for CVE-2006-2389
Proof-of-concept code and exploit modules indexed by Sploitus
Microsoft Office 2000/2002 Property Code Execution Vulnerability
Microsoft Office Property Code Execution exploit (CVE-2006-2389)
Microsoft Office Property Code Execution
Microsoft Office Property Code Execution exploit (CVE-2006-2389)
Microsoft Office 20002002 - Property Code Execution
Microsoft Office 2000/2002 - Property Code Execution