CVE-2002-1339: Medium severity microsoft office web components vulnerability
The "XMLURL" property in the Spreadsheet component of Office Web Components (OWC) 10 follows redirections, which allows remote attackers to determine the existence of local files based on exceptions, or to read WorkSheet XML files.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2002-1339?
CVE-2002-1339 is considered a high severity vulnerability due to potential unauthorized access to local files.
How do I fix CVE-2002-1339?
To fix CVE-2002-1339, it is recommended to upgrade to a newer version of Microsoft Office Web Components or apply relevant security patches.
What is the impact of CVE-2002-1339?
The impact of CVE-2002-1339 includes the possibility for remote attackers to access local files and determine their existence.
Who is affected by CVE-2002-1339?
CVE-2002-1339 affects users of Microsoft Office Web Components version 2002.
What type of attack can be executed using CVE-2002-1339?
An attacker can exploit CVE-2002-1339 to read WorkSheet XML files or determine the existence of local files via redirection.