PT-2000-1720 · Microsoft · Office Word+2
Published
2000-10-20
·
Updated
2018-10-12
·
CVE-2000-0788
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Microsoft Word (affected versions not specified)
Description
The issue concerns the Mail Merge tool in Microsoft Word, which fails to prompt the user before executing Visual Basic (VBA) scripts in an Access database. This could potentially allow an attacker to execute arbitrary commands.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Access
Office Word
Vba