CVE-2000-0597

Microsoft Office 2000 (Excel and PowerPoint) and PowerPoint 97 are marked as safe for scripting, which allows remote attackers to force Internet Explorer or some email clients to save files to arbitrary locations via the Visual Basic for Applications (VBA) SaveAs function, aka the "Office HTML Script" vulnerability.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:microsoft:excel:2000:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:powerpoint:97:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:powerpoint:2000:*:*:*:*:*:*:*

History

20 Nov 2024, 23:32

Type Values Removed Values Added
References () http://www.securityfocus.com/bid/1399 - () http://www.securityfocus.com/bid/1399 -
References () http://www.securityfocus.com/templates/archive.pike?list=1&msg=39589349.ED9DBCAB%40nat.bg - () http://www.securityfocus.com/templates/archive.pike?list=1&msg=39589349.ED9DBCAB%40nat.bg -
References () https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-049 - () https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-049 -

07 Nov 2023, 01:55

Type Values Removed Values Added
References
  • {'url': 'http://www.securityfocus.com/templates/archive.pike?list=1&msg=39589349.ED9DBCAB@nat.bg', 'name': '20000627 IE 5 and Excel 2000, PowerPoint 2000 vulnerability - executing programs', 'tags': ['Exploit', 'Patch', 'Vendor Advisory'], 'refsource': 'BUGTRAQ'}
  • () http://www.securityfocus.com/templates/archive.pike?list=1&msg=39589349.ED9DBCAB%40nat.bg -

Information

Published : 2000-06-27 04:00

Updated : 2024-11-20 23:32


NVD link : CVE-2000-0597

Mitre link : CVE-2000-0597

CVE.ORG link : CVE-2000-0597


JSON object : View

Products Affected

microsoft

  • excel
  • powerpoint