peter bassill · operator
$ cve CVE-2010-0822 JSON

CVE-2010-0822 EXPLOIT

9.3
HIGH · CVSS 2.0 · EPSS 70.1% (pctl 99)

Patch early

A public exploit exists.

Description

Stack-based buffer overflow in Microsoft Office Excel 2002 SP3, Office 2004 for Mac, Office 2008 for Mac, and Open XML File Format Converter for Mac allows remote attackers to execute arbitrary code via an Excel file with a crafted OBJ (0x5D) record, aka "Excel Object Stack Overflow Vulnerability."

Scoring

CVSS9.3 (HIGH, v2.0)
VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
EPSS70.12% — more likely to be exploited than 99% of all CVEs
WeaknessCWE-94
On CISA KEVno
Public exploityes
Published2010-06-08
Last modified2026-06-16

Affected (3)

VendorProduct
microsoftexcel
microsoftoffice
microsoftopen xml file format converter

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD