PT-2002-1667 · Microsoft · Office Word+1
Published
2002-08-12
·
Updated
2018-10-12
·
CVE-2002-0619
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Microsoft Word 2002 for Windows
Description
The issue allows remote attackers to execute Visual Basic (VBA) scripts within a mail merge document saved in HTML format when Microsoft Access is present on the system.
Recommendations
For Microsoft Word 2002 for Windows, consider disabling the Mail Merge Tool as a temporary workaround until a patch is available. Restrict access to mail merge documents saved in HTML format to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Access
Office Word