PT-2002-1665 · Microsoft · Office Excel
Published
2002-08-12
·
Updated
2018-10-12
·
CVE-2002-0617
CVSS v2.0
5.1
Medium
| Vector | AV:N/AC:H/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Microsoft Excel versions 2000 through 2002
Description
The issue allows remote attackers to execute code by creating a hyperlink on a drawing shape in a source workbook that points to a destination workbook containing an autoexecute macro.
Recommendations
For Microsoft Excel 2000, avoid using hyperlinks on drawing shapes that point to workbooks with autoexecute macros until a fix is available.
For Microsoft Excel 2002, restrict the use of autoexecute macros in destination workbooks to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Office Excel