PT-2007-2125 · Microsoft · Office Excel+2

Published

2007-02-02

·

Updated

2025-10-22

·

CVE-2007-0671

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Microsoft Excel versions 2000, XP, 2003, and 2004 for Mac
Description A remote code execution issue exists in Excel, allowing attackers to execute arbitrary code when the application opens a specially crafted file. This file could be sent as an email attachment or hosted on a malicious website. An attacker can exploit this issue by creating a specially crafted Excel file that enables remote code execution.
Recommendations For Microsoft Excel versions 2000, XP, 2003, and 2004 for Mac, consider avoiding the use of the application to open files from untrusted sources until a fix is available. As a temporary workaround, restrict access to email attachments and links to malicious web sites to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2007-0671

Affected Products

Office Excel
Office
Office Visio