Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gx66-9wfp-gpfc

Опубликовано: 30 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

The Host function in Microsoft Office Web Components (OWC) 2000 and 2002 is exposed in components that are marked as safe for scripting, which allows remote attackers to execute arbitrary commands via the setTimeout method.

The Host function in Microsoft Office Web Components (OWC) 2000 and 2002 is exposed in components that are marked as safe for scripting, which allows remote attackers to execute arbitrary commands via the setTimeout method.

EPSS

Процентиль: 93%
0.09515
Низкий

Связанные уязвимости

nvd
больше 23 лет назад

The Host function in Microsoft Office Web Components (OWC) 2000 and 2002 is exposed in components that are marked as safe for scripting, which allows remote attackers to execute arbitrary commands via the setTimeout method.

EPSS

Процентиль: 93%
0.09515
Низкий