PT-2000-1531 · Microsoft · Powerpoint 97+3
Publicado
2000-06-27
·
Atualizado
2018-10-12
·
CVE-2000-0597
CVSS v2.0
7.5
Alta
| Vetor | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Microsoft Office 2000 (Excel and PowerPoint)
PowerPoint 97
Description
The issue allows remote attackers to force Internet Explorer or some email clients to save files to arbitrary locations via the Visual Basic for Applications (VBA) SaveAs function.
Recommendations
For Microsoft Office 2000, consider disabling the VBA SaveAs function until a patch is available.
For PowerPoint 97, restrict the use of the VBA SaveAs function to minimize the risk of exploitation.
Exploit
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Internet Explorer
Office 2000
Powerpoint 97
Visual Basic For Applications