← All CVEs

CVE-2010-0395

high · 9.3

OpenOffice.org 2.x and 3.0 before 3.2.1 allows user-assisted remote attackers to bypass Python macro security restrictions and execute arbitrary Python code via a crafted OpenDocument Text (ODT) file that triggers code execution when the macro directory structure is previewed.

9.3
CVSS
10.5%
EPSS (exploit prob.)
96th
EPSS percentile
2010-06-10
Published

AV:N/AC:M/Au:N/C:C/I:C/A:C

Affected products

VendorProductAffected versions
canonicalubuntu_linux8.04
canonicalubuntu_linux9.04
canonicalubuntu_linux9.10
canonicalubuntu_linux10.04
debiandebian_linux5.0
debiandebian_linux6.0
fedoraprojectfedora11
fedoraprojectfedora12
fedoraprojectfedora13
opensuseopensuse11.0
opensuseopensuse11.1
opensuseopensuse11.2
suselinux_enterprise_desktop10
suselinux_enterprise_desktop11
apacheopenoffice>= 2.0.0, < 3.2.1

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2010-0395