CVE-2010-3946
high · 9.3Integer overflow in the PICT image converter in the graphics filters in Microsoft Office XP SP3, Office 2003 SP3, and Office Converter Pack allows remote attackers to execute arbitrary code via a crafted PICT image in an Office document, aka "PICT Image Converter Integer Overflow Vulnerability."
9.3
CVSS
21.6%
EPSS (exploit prob.)
98th
EPSS percentile
2010-12-16
Published
AV:N/AC:M/Au:N/C:C/I:C/A:C
Weaknesses
CWE-189
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| microsoft | office | 2003 |
| microsoft | office | xp |
| microsoft | office_converter_pack | all versions |
Check a specific version with /api/v1/cve/match.
References
- http://www.securitytracker.com/id?1024887
- http://www.us-cert.gov/cas/techalerts/TA10-348A.html
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2010/ms10-105
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11967
- http://www.securitytracker.com/id?1024887
- http://www.us-cert.gov/cas/techalerts/TA10-348A.html
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2010/ms10-105
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11967
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2010-3946