CVE Feed

    Dashboard / CVE / CVE-2010-1881

    CVE-2010-1881

    The FieldList ActiveX control in the Microsoft Access Wizard Controls in ACCWIZ.dll in Microsoft Office Access 2003 SP3 does not properly interact with the memory-access approach used by Internet Explorer and Office during instantiation, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via an HTML document that references this control along with crafted persistent storage data, aka "ACCWIZ.dll Uninitialized Variable Vulnerability."

    Published:Jul 14, 2010
    Last Modified:Apr 11, 2025
    EPS:Jul 14, 2010
    EPSS Score:0.56148
    CVSS Score:9.3

    Affected Products

    Vendor
    Microsoft
    Product
    Access
    Vendor
    Microsoft
    Product
    Office

    Exploits

    No exploit reference

    Related CVEs

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High