CVE-2008-3005
Last modified
CVE-2008-3005 is a vulnerability of currently unknown severity. Array index vulnerability in Microsoft Office Excel 2000 SP3 and 2002 SP3, and Office 2004 and 2008 for Mac allows remote attackers to execute arbitrary code via an Excel file with a crafted array index for a FORMAT record, aka the "Excel Index Array Vulnerability.". EPSS estimates a 31.93% chance of exploitation in the next 30 days.
Description
Array index vulnerability in Microsoft Office Excel 2000 SP3 and 2002 SP3, and Office 2004 and 2008 for Mac allows remote attackers to execute arbitrary code via an Excel file with a crafted array index for a FORMAT record, aka the "Excel Index Array Vulnerability."
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions | Update |
|---|---|---|---|
| Microsoft | Office | 2000 | Sp3 |
| Microsoft | Office | xp | Sp3 |
| Microsoft | Office | 2004 | — |
| Microsoft | Office | 2008 | — |
References
- http://secunia.com/advisories/31454Vendor Advisory
- http://www.us-cert.gov/cas/techalerts/TA08-225A.htmlUS Government Resource
- http://www.vupen.com/english/advisories/2008/2347Vendor Advisory
- http://secunia.com/advisories/31454Vendor Advisory
- http://www.us-cert.gov/cas/techalerts/TA08-225A.htmlUS Government Resource
- http://www.vupen.com/english/advisories/2008/2347Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2008-3005?
How severe is CVE-2008-3005?
How do I fix CVE-2008-3005?
Are you affected by CVE-2008-3005?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
