PT-2002-1666 · Microsoft · Office Excel
Published
2002-08-12
·
Updated
2018-10-12
·
CVE-2002-0618
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Microsoft Excel versions 2000 and 2002
Description
The issue allows remote attackers to execute code in the Local Computer zone by embedding HTML scripts within an Excel workbook that contains an XSL stylesheet.
Recommendations
For Microsoft Excel 2000, update to a version that includes the fix for this issue.
For Microsoft Excel 2002, update to a version that includes the fix for this issue.
As a temporary workaround, consider avoiding the use of XSL stylesheets in Excel workbooks until a patch is available.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Office Excel