CVE-2006-1318

Microsoft Office 2003 SP1 and SP2, Office XP SP3, Office 2000 SP3, Office 2004 for Mac, and Office X for Mac do not properly parse record lengths, which allows remote attackers to execute arbitrary code via a malformed control in an Office document, aka "Microsoft Office Control Vulnerability."
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:microsoft:office:2000:sp1:*:*:*:*:*:*
cpe:2.3:a:microsoft:office:2000:sp2:*:*:*:*:*:*
cpe:2.3:a:microsoft:office:2004:*:mac:*:*:*:*:*
cpe:2.3:a:microsoft:office:x:*:mac:*:*:*:*:*
cpe:2.3:a:microsoft:office:xp:sp3:*:*:*:*:*:*

History

No history.

Information

Published : 2014-09-19 10:55

Updated : 2023-12-10 11:31


NVD link : CVE-2006-1318

Mitre link : CVE-2006-1318

CVE.ORG link : CVE-2006-1318


JSON object : View

Products Affected

microsoft

  • office
CWE
CWE-94

Improper Control of Generation of Code ('Code Injection')