← All CVEs

CVE-2010-0254

high · 7.6

Microsoft Office Visio 2002 SP2, 2003 SP3, and 2007 SP1 and SP2 does not properly validate attributes in Visio files, which allows remote attackers to execute arbitrary code via a crafted file, aka "Visio Attribute Validation Memory Corruption Vulnerability."

7.6
CVSS
17.9%
EPSS (exploit prob.)
97th
EPSS percentile
2010-04-14
Published

AV:N/AC:H/Au:N/C:C/I:C/A:C

Weaknesses

CWE-94

Affected products

VendorProductAffected versions
microsoftvisio2002
microsoftvisio2003
microsoftvisio2007
microsoftvisio2007

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2010-0254