First published: Wed Oct 13 2010(Updated: )
Microsoft Excel 2002 SP3 and Office 2004 for Mac do not properly validate record information, which allows remote attackers to execute arbitrary code via a crafted Excel document, aka "Merge Cell Record Pointer Vulnerability."
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Office | =2004 | |
Microsoft Excel for Mac | =2002-sp3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-3237 has been rated as critical due to its ability to execute arbitrary code remotely.
To fix CVE-2010-3237, you should apply the latest security updates provided by Microsoft for Excel 2002 SP3 and Office 2004 for Mac.
CVE-2010-3237 affects Microsoft Excel 2002 SP3 and Microsoft Office 2004 for Mac.
CVE-2010-3237 can be exploited through crafted Excel documents sent to users, enabling remote code execution.
While it is recommended to update software, disabling macros in Excel may help mitigate risks until an update can be applied.