When a Microsoft Office 2000 document is launched, the directory of that document is first used to locate DLL's such as riched20.dll and msi.dll, which could allow an attacker to execute arbitrary commands by inserting a Trojan Horse DLL into the same directory as the document.
References
Configurations
History
20 Nov 2024, 23:33
Type | Values Removed | Values Added |
---|---|---|
References | () http://archives.neohapsis.com/archives/bugtraq/2000-09/0277.html - | |
References | () http://archives.neohapsis.com/archives/ntbugtraq/2000-q3/0155.html - | |
References | () http://archives.neohapsis.com/archives/win2ksecadvice/2000-q3/0117.html - Vendor Advisory | |
References | () http://www.securityfocus.com/bid/1699 - Exploit, Patch, Vendor Advisory | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/5263 - |
Information
Published : 2000-11-14 05:00
Updated : 2024-11-20 23:33
NVD link : CVE-2000-0854
Mitre link : CVE-2000-0854
CVE.ORG link : CVE-2000-0854
JSON object : View
Products Affected
microsoft
- office
CWE