PT-2003-1893 · Microsoft · Office Word+1
Kazuyuki Housaka
·
Published
2003-11-18
·
Updated
2018-10-12
·
CVE-2003-0820
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions:
Microsoft Word versions 97, 98(J), 2000, and 2002
Microsoft Works Suites versions 2001 through 2004
Description:
The issue allows remote attackers to execute arbitrary code via a buffer overflow attack due to improper checking of the length of the
Macro names data value.Recommendations:
For Microsoft Word versions 97, 98(J), 2000, and 2002, and Microsoft Works Suites versions 2001 through 2004, consider disabling the macro execution feature until a patch is available.
Restrict access to files that may contain malicious macros to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Office Word
Works Suite