← All CVEs

CVE-2006-3590

medium · 5.1

mso.dll, as used by Microsoft PowerPoint 2000 through 2003, allows user-assisted attackers to execute arbitrary commands via a malformed shape container in a PPT file that leads to memory corruption, as exploited by Trojan.PPDropper.B, a different issue than CVE-2006-1540 and CVE-2006-3493.

5.1
CVSS
14.3%
EPSS (exploit prob.)
96th
EPSS percentile
2006-07-14
Published

AV:N/AC:H/Au:N/C:P/I:P/A:P

Affected products

VendorProductAffected versions
microsoftpowerpoint2000
microsoftpowerpoint2002
microsoftpowerpoint2003
microsoftpowerpoint2003
microsoftpowerpoint2003

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2006-3590