← All CVEs

CVE-2006-3650

high · 9.3

Microsoft Office 2000, XP, 2003, 2004 for Mac, and v.X for Mac do not properly parse the length of a chart record, which allows remote user-assisted attackers to execute arbitrary code via a Word document with an embedded malformed chart record that triggers an overwrite of pointer values with values from the document, a different vulnerability than CVE-2006-3434, CVE-2006-3864, and CVE-2006-3868.

9.3
CVSS
38.7%
EPSS (exploit prob.)
99th
EPSS percentile
2006-10-10
Published

AV:N/AC:M/Au:N/C:C/I:C/A:C

Weaknesses

CWE-94

Affected products

VendorProductAffected versions
microsoftoffice2000
microsoftoffice2000
microsoftoffice2000
microsoftoffice2000
microsoftoffice2000
microsoftoffice2000
microsoftoffice2000
microsoftoffice2001
microsoftoffice2001
microsoftoffice2001
microsoftoffice2003
microsoftoffice2003
microsoftoffice2003
microsoftoffice2003
microsoftoffice2004
microsoftofficev.x

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2006-3650