CVE Feed

    Dashboard / CVE / CVE-2011-0105

    CVE-2011-0105

    Microsoft Excel 2002 SP3, Office 2004 and 2008 for Mac, and Open XML File Format Converter for Mac obtain a certain length value from an uninitialized memory location, which allows remote attackers to trigger a buffer overflow and execute arbitrary code via a crafted Excel file, aka "Excel Data Initialization Vulnerability."

    Published:Apr 13, 2011
    Last Modified:Apr 11, 2025
    EPS:Apr 13, 2011
    EPSS Score:0.89418
    CVSS Score:9.3

    Affected Products

    Vendor
    Microsoft
    Product
    Excel
    Vendor
    Microsoft
    Product
    Office
    Vendor
    Microsoft
    Product
    Open Xml File Format Converter

    Related CVEs

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High