PT-2001-1469 · Microsoft · Office Word
Published
2001-06-27
·
Updated
2018-10-12
·
CVE-2001-0240
CVSS v2.0
4.6
Medium
| Vector | AV:L/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Microsoft Word versions prior to 2002
Description
The issue allows attackers to automatically execute macros without warning the user. This is achieved via a Rich Text Format (RTF) document that links to a template with the embedded macro.
Recommendations
For versions prior to 2002, consider disabling the execution of macros from templates to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Office Word