CVE-2015-2378: Medium severity microsoft office excel vulnerability
Untrusted search path vulnerability in Microsoft Excel 2007 SP3, Excel 2010 SP2, Excel Viewer 2007 SP3, and Office Compatibility Pack SP3 allows local users to gain privileges via a Trojan horse DLL in the current working directory, aka "Microsoft Excel DLL Remote Code Execution Vulnerability."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-2378?
CVE-2015-2378 is considered to have a high severity due to its potential for remote code execution.
How do I fix CVE-2015-2378?
To fix CVE-2015-2378, you should apply the security updates provided by Microsoft for the affected versions of Excel and Office.
Which software is affected by CVE-2015-2378?
CVE-2015-2378 affects Microsoft Excel 2007 SP3, Excel 2010 SP2, Excel Viewer 2007 SP3, and the Office Compatibility Pack SP3.
What type of vulnerability is CVE-2015-2378?
CVE-2015-2378 is an untrusted search path vulnerability allowing local users to gain elevated privileges.
Can CVE-2015-2378 be exploited by attackers?
Yes, CVE-2015-2378 can be exploited by attackers through the use of a Trojan horse DLL placed in the current working directory.