First published: Tue Sep 24 2002(Updated: )
The LoadText method in the spreadsheet component in Microsoft Office Web Components (OWC) 2000 and 2002 allows remote attackers to read arbitrary files through Internet Explorer via a URL that redirects to the target file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Project 2013 | =2000 | |
Microsoft Project 2013 | =2002 | |
Microsoft Office Web Components | =2002 | |
Microsoft Office Web Components | =2000 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2002-0860 is classified as a medium severity vulnerability due to its potential for information disclosure.
To fix CVE-2002-0860, ensure you apply the latest updates and patches provided by Microsoft for the affected products.
CVE-2002-0860 affects Microsoft Office Web Components 2000 and 2002, as well as Microsoft Project 2000 and 2002.
CVE-2002-0860 allows remote attackers to read arbitrary files through a crafted URL that redirects to the file.
CVE-2002-0860 was disclosed in the year 2002.