CVE-2010-3237: Input Validation
Microsoft Excel 2002 SP3 and Office 2004 for Mac do not properly validate record information, which allows remote attackers to execute arbitrary code via a crafted Excel document, aka "Merge Cell Record Pointer Vulnerability."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-3237?
CVE-2010-3237 has been rated as critical due to its ability to execute arbitrary code remotely.
How do I fix CVE-2010-3237?
To fix CVE-2010-3237, you should apply the latest security updates provided by Microsoft for Excel 2002 SP3 and Office 2004 for Mac.
What versions are affected by CVE-2010-3237?
CVE-2010-3237 affects Microsoft Excel 2002 SP3 and Microsoft Office 2004 for Mac.
What type of attacks can exploit CVE-2010-3237?
CVE-2010-3237 can be exploited through crafted Excel documents sent to users, enabling remote code execution.
Is there a workaround for CVE-2010-3237 if I cannot update immediately?
While it is recommended to update software, disabling macros in Excel may help mitigate risks until an update can be applied.