CVE-2011-0093: Code Injection
ELEMENTS.DLL in Microsoft Visio 2002 SP2, 2003 SP3, and 2007 SP2 does not properly parse structures during the opening of a Visio file, which allows remote attackers to execute arbitrary code via a file containing a malformed structure, aka "Visio Data Type Memory Corruption Vulnerability."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-0093?
CVE-2011-0093 has been classified as a critical vulnerability allowing remote code execution.
How do I fix CVE-2011-0093?
To fix CVE-2011-0093, it is recommended to apply the latest security updates provided by Microsoft for the affected versions of Visio.
What versions of Microsoft Visio are affected by CVE-2011-0093?
CVE-2011-0093 affects Microsoft Visio 2002 SP2, 2003 SP3, and 2007 SP2.
What type of attack does CVE-2011-0093 enable?
CVE-2011-0093 enables remote attackers to execute arbitrary code on the user's system.
How does CVE-2011-0093 exploit Microsoft Visio?
CVE-2011-0093 exploits Microsoft Visio by improperly parsing file structures, leading to memory corruption.