PT-1999-1552 · Microsoft · Office Excel

Published

1999-12-31

·

Updated

2018-10-12

·

CVE-1999-1055

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Microsoft Excel version 97
Description The issue allows attackers to execute arbitrary commands by using the CALL function to execute a malicious DLL. This could potentially lead to unauthorized actions on the affected system.
Recommendations For Microsoft Excel version 97, consider disabling the CALL function as a temporary workaround until a patch is available. Restrict access to malicious DLLs to minimize the risk of exploitation.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-1999-1055

Affected Products

Office Excel