CVE-2011-1277
Microsoft Excel 2002 SP3, Office 2008 for Mac, and Open XML File Format Converter for Mac do not properly validate record information during parsing of Excel spreadsheets, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted spreadsheet, aka "Excel Memory Corruption Vulnerability."
- Affected products
- Office Excel, Office 2008 For Mac, Open Xml File Format Converter For Mac
- Microsoft Excel
- = 2002
- Microsoft Office
- = 2008
- Microsoft Open Xml File Format Converter
- All versions
- CVSS 2.0
- 9.3 HIGH
- EPSS
- 16.1% (97th percentile)
- Weakness
- CWE-119
- NVD status
- Modified
- Published
- 2011-06-16
CVE-2011-1277 at NVD
1 known exploit for CVE-2011-1277
Proof-of-concept code and exploit modules indexed by Sploitus