PT-2005-5301 · Openoffice.Org · Openoffice.Org
Published
2005-12-31
·
Updated
2009-11-12
·
CVE-2005-4636
CVSS v2.0
4.6
Medium
| Vector | AV:L/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
OpenOffice.org versions 2.0 and earlier
Description
The issue allows attackers to trick users into bypassing intended security settings by clicking the WWW-browser button in the Hyperlink dialog, even when hyperlinks have been disabled.
Recommendations
For OpenOffice.org versions 2.0 and earlier, consider disabling the WWW-browser button in the Hyperlink dialog as a temporary workaround to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Openoffice.Org