CVE-2002-1340: Medium severity microsoft office web components vulnerability
The "ConnectionFile" property in the DataSourceControl component in Office Web Components (OWC) 10 allows remote attackers to determine the existence of local files by detecting an exception.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2002-1340?
CVE-2002-1340 is classified as a vulnerability that can allow remote attackers to gain information about the existence of local files.
How do I fix CVE-2002-1340?
To mitigate CVE-2002-1340, it is recommended to apply updates or patches provided by Microsoft for Office Web Components 2002.
What are the consequences of CVE-2002-1340?
Exploitation of CVE-2002-1340 allows attackers to detect local file existence, potentially leading to further attacks or data exposure.
What software is affected by CVE-2002-1340?
CVE-2002-1340 specifically affects Microsoft Office Web Components version 2002.
How was CVE-2002-1340 discovered?
CVE-2002-1340 was identified as a result of the vulnerability in the DataSourceControl component's "ConnectionFile" property.