CVE-2002-1716

The Host() function in the Microsoft spreadsheet component on Microsoft Office XP allows remote attackers to create arbitrary files using the SaveAs capability.
References
Link Resource
http://online.securityfocus.com/archive/1/265087 Broken Link Third Party Advisory VDB Entry
http://www.guninski.com/m%24oxp-2.html
http://www.securityfocus.com/bid/4398 Third Party Advisory VDB Entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/8711 Third Party Advisory VDB Entry
Configurations

Configuration 1 (hide)

cpe:2.3:a:microsoft:office:xp:*:*:*:*:*:*:*

History

07 Mar 2023, 18:23

Type Values Removed Values Added
CPE cpe:2.3:a:microsoft:office:*:*:*:*:*:*:*:* cpe:2.3:a:microsoft:office:xp:*:*:*:*:*:*:*
CWE NVD-CWE-Other NVD-CWE-noinfo
References (XF) https://exchange.xforce.ibmcloud.com/vulnerabilities/8711 - (XF) https://exchange.xforce.ibmcloud.com/vulnerabilities/8711 - Third Party Advisory, VDB Entry
References (BUGTRAQ) http://online.securityfocus.com/archive/1/265087 - (BUGTRAQ) http://online.securityfocus.com/archive/1/265087 - Broken Link, Third Party Advisory, VDB Entry
References (BID) http://www.securityfocus.com/bid/4398 - (BID) http://www.securityfocus.com/bid/4398 - Third Party Advisory, VDB Entry
References (MISC) http://www.guninski.com/m$oxp-2.html - Exploit, Vendor Advisory (MISC) http://www.guninski.com/m$oxp-2.html - Exploit, Third Party Advisory

Information

Published : 2002-12-31 05:00

Updated : 2024-02-04 16:31


NVD link : CVE-2002-1716

Mitre link : CVE-2002-1716

CVE.ORG link : CVE-2002-1716


JSON object : View

Products Affected

microsoft

  • office