PT-2007-2125 · Microsoft · Office Excel+2
Published
2007-02-02
·
Updated
2025-10-22
·
CVE-2007-0671
CVSS v3.1
8.8
High
| Vector | AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Microsoft Excel versions 2000, XP, 2003, and 2004 for Mac
Description
A remote code execution issue exists in Excel, allowing attackers to execute arbitrary code when the application opens a specially crafted file. This file could be sent as an email attachment or hosted on a malicious website. An attacker can exploit this issue by creating a specially crafted Excel file that enables remote code execution.
Recommendations
For Microsoft Excel versions 2000, XP, 2003, and 2004 for Mac, consider avoiding the use of the application to open files from untrusted sources until a fix is available.
As a temporary workaround, restrict access to email attachments and links to malicious web sites to minimize the risk of exploitation.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Office Excel
Office
Office Visio