PT-2003-1893 · Microsoft · Office Word+1

Kazuyuki Housaka

·

Published

2003-11-18

·

Updated

2018-10-12

·

CVE-2003-0820

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions: Microsoft Word versions 97, 98(J), 2000, and 2002 Microsoft Works Suites versions 2001 through 2004
Description: The issue allows remote attackers to execute arbitrary code via a buffer overflow attack due to improper checking of the length of the Macro names data value.
Recommendations: For Microsoft Word versions 97, 98(J), 2000, and 2002, and Microsoft Works Suites versions 2001 through 2004, consider disabling the macro execution feature until a patch is available. Restrict access to files that may contain malicious macros to minimize the risk of exploitation.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2003-0820

Affected Products

Office Word
Works Suite