HIGH · 7.5

CVE-2003-0664

Microsoft Word 2002, 2000, 97, and 98(J) does not properly check certain properties of a document, which allows attackers to bypass the macro security model and automatically execute arbitrary macros ...

Vulnerability Description

Microsoft Word 2002, 2000, 97, and 98(J) does not properly check certain properties of a document, which allows attackers to bypass the macro security model and automatically execute arbitrary macros via a malicious document.

CVSS Score

7.5

HIGH

AV:N/AC:L/Au:N/C:P/I:P/A:P
Confidentiality
PARTIAL
Integrity
PARTIAL
Availability
PARTIAL

Affected Products

VendorProductVersions
MicrosoftWord97
MicrosoftWorks2001

References

FAQ

What is CVE-2003-0664?

CVE-2003-0664 is a vulnerability with a CVSS score of 7.5 (HIGH). Microsoft Word 2002, 2000, 97, and 98(J) does not properly check certain properties of a document, which allows attackers to bypass the macro security model and automatically execute arbitrary macros ...

How severe is CVE-2003-0664?

CVE-2003-0664 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2003-0664?

Check the references section above for vendor advisories and patch information. Affected products include: Microsoft Word, Microsoft Works.