CVE-2010-3337: Critical severity microsoft office vulnerability
Untrusted search path vulnerability in Microsoft Office 2007 SP2 and 2010 allows local users to gain privileges via a Trojan horse DLL in the current working directory, aka "Insecure Library Loading Vulnerability." NOTE: this might overlap CVE-2010-3141 and CVE-2010-3142.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-3337?
CVE-2010-3337 has a medium severity rating as it allows local users to gain elevated privileges through a Trojan horse DLL.
How do I fix CVE-2010-3337?
To fix CVE-2010-3337, apply the latest security updates provided by Microsoft for Office 2007 SP2 and Office 2010.
What types of software are affected by CVE-2010-3337?
CVE-2010-3337 affects Microsoft Office 2007 SP2 and Microsoft Office 2010.
Can CVE-2010-3337 be exploited remotely?
No, CVE-2010-3337 cannot be exploited remotely as it requires local user access to execute the attack.
What is the impact of exploiting CVE-2010-3337?
Exploiting CVE-2010-3337 may allow an attacker to execute malicious code with elevated privileges on the affected system.