← All CVEs

CVE-2013-3889

high · 9.3

Microsoft Excel 2007 SP3, 2010 SP1 and SP2, 2013, and 2013 RT; Office 2007 SP3, 2010 SP1 and SP2, 2013, and 2013 RT; Office for Mac 2011; Excel Viewer; Office Compatibility Pack SP3; and Excel Services and Word Automation Services in SharePoint Server 2013 allow remote attackers to execute arbitrary code via a crafted Office document, aka "Microsoft Excel Memory Corruption Vulnerability."

9.3
CVSS
27.4%
EPSS (exploit prob.)
98th
EPSS percentile
2013-10-09
Published

AV:N/AC:M/Au:N/C:C/I:C/A:C

Weaknesses

CWE-119

Affected products

VendorProductAffected versions
microsoftexcel2010
microsoftexcel2010
microsoftexcel2013
microsoftexcel2013
microsoftexcel_viewerall versions
microsoftoffice2007
microsoftoffice2010
microsoftoffice2010
microsoftoffice2011
microsoftoffice2013
microsoftoffice_2013_rtall versions
microsoftoffice_compatibility_packall versions
microsoftoffice_web_apps2010
microsoftoffice_web_apps2010
microsoftsharepoint_server2007
microsoftsharepoint_server2013
microsoftsharepoint_server2010
microsoftsharepoint_server2010

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2013-3889