First published: Wed Mar 21 2007(Updated: )
OpenOffice.org (OOo) Office Suite allows user-assisted remote attackers to execute arbitrary commands via shell metacharacters in a prepared link in a crafted document.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
OpenOffice OpenOffice | ||
Apache OpenOffice |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-0239 is rated as a medium severity vulnerability as it allows remote attackers to execute arbitrary commands under certain conditions.
To fix CVE-2007-0239, upgrade to a patched version of OpenOffice or Apache OpenOffice that addresses this vulnerability.
CVE-2007-0239 enables attackers to perform user-assisted remote command execution through crafted documents.
CVE-2007-0239 affects OpenOffice and Apache OpenOffice applications.
Yes, user interaction is required, as the vulnerability exploits crafted documents that must be opened by the user.