CVE-2009-3128: Code Injection
Microsoft Office Excel 2002 SP3 and 2003 SP3, and Office Excel Viewer 2003 SP3, does not properly parse the Excel file format, which allows remote attackers to execute arbitrary code via a spreadsheet with a malformed record object, aka "Excel SxView Memory Corruption Vulnerability."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2009-3128?
CVE-2009-3128 is considered a critical vulnerability as it allows remote attackers to execute arbitrary code.
How do I fix CVE-2009-3128?
To fix CVE-2009-3128, you should apply the latest updates and patches provided by Microsoft for affected versions of Excel.
Which software is affected by CVE-2009-3128?
CVE-2009-3128 affects Microsoft Office Excel 2002 SP3, 2003 SP3, Excel Viewer 2003 SP3, and other related software.
Can CVE-2009-3128 be exploited through email attachments?
Yes, CVE-2009-3128 can be exploited through specially crafted Excel files sent via email attachments.
What can happen if I don't address CVE-2009-3128?
If not addressed, CVE-2009-3128 could allow an attacker to run malicious code on the affected system, potentially leading to data loss or unauthorized access.