CVE-2007-3899: Code Injection
Published Oct 9, 2007
·Updated
Unspecified vulnerability in Microsoft Word 2000 SP3, Word 2002 SP3, and Office 2004 for Mac allows user-assisted remote attackers to execute arbitrary code via a malformed string in a Word file, aka "Word Memory Corruption Vulnerability."
Affected Software
5 affected components
Microsoft Word=2002-sp3
Microsoft Office=2004
Microsoft Office=xp-sp3
Microsoft Word=2000-sp3
Microsoft Office=2000-sp3
Event History
Oct 9, 2007
CVE Published
10:17 PM
Oct 10, 2007
CVE Published
via MITRE·02:00 AM
Data Sourced
via MITRE·02:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-3899?
CVE-2007-3899 is classified as a critical vulnerability that could allow remote code execution.
2
How do I fix CVE-2007-3899?
To fix CVE-2007-3899, users should apply the latest security patches provided by Microsoft for affected versions.
3
Which Microsoft products are affected by CVE-2007-3899?
CVE-2007-3899 affects Microsoft Word 2000 SP3, Word 2002 SP3, and Office 2004 for Mac.
4
What type of attacks can exploit CVE-2007-3899?
CVE-2007-3899 can be exploited through user-assisted remote attacks via specially crafted Word files.
5
What are the consequences of exploiting CVE-2007-3899?
Successful exploitation of CVE-2007-3899 may allow attackers to execute arbitrary code on the victim's machine.