CVE-2011-1275
Microsoft Excel 2002 SP3; Office 2004, 2008, and 2011 for Mac; and Open XML File Format Converter for Mac do not properly validate record information during parsing of Excel spreadsheets, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted spreadsheet, aka "Excel Memory Heap Overwrite Vulnerability."
- Affected products
- Office Excel, Office, Open Xml File Format Converter For Mac
- Microsoft Excel
- = 2002
- Microsoft Office
- = 2004, 2008, 2011
- Microsoft Open Xml File Format Converter
- All versions
- CVSS 2.0
- 9.3 HIGH
- EPSS
- 13.3% (96th percentile)
- Weakness
- CWE-119
- NVD status
- Modified
- Published
- 2011-06-16
CVE-2011-1275 at NVD
1 known exploit for CVE-2011-1275
Proof-of-concept code and exploit modules indexed by Sploitus