← All CVEs

CVE-2006-0009

medium · 5.1

Buffer overflow in Microsoft Office 2000 SP3, XP SP3, and other versions and packages, allows user-assisted attackers to execute arbitrary code via a routing slip that is longer than specified by the provided length field, as exploited by malware such as TROJ_MDROPPER.BH and Trojan.PPDropper.E in attacks against PowerPoint.

5.1
CVSS
14.2%
EPSS (exploit prob.)
96th
EPSS percentile
2006-03-14
Published

AV:N/AC:H/Au:N/C:P/I:P/A:P

Affected products

VendorProductAffected versions
microsoftoffice2000
microsoftoffice2003
microsoftoffice2003
microsoftoffice2004
microsoftofficev.x
microsoftofficexp
microsoftworks2000
microsoftworks2001
microsoftworks2002
microsoftworks2003
microsoftworks2004
microsoftworks2005
microsoftworks2006

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2006-0009