peter bassill · operator
$ cve CVE-2012-5672 JSON

CVE-2012-5672 EXPLOIT

4.3
MEDIUM · CVSS 2.0 · EPSS 12.5% (pctl 96)

Patch early

A public exploit exists.

Description

Microsoft Excel Viewer (aka Xlview.exe) and Excel in Microsoft Office 2007 (aka Office 12) allow remote attackers to cause a denial of service (read access violation and application crash) via a crafted spreadsheet file, as demonstrated by a .xls file with battery voltage data.

Scoring

CVSS4.3 (MEDIUM, v2.0)
VectorAV:N/AC:M/Au:N/C:N/I:N/A:P
EPSS12.53% — more likely to be exploited than 96% of all CVEs
On CISA KEVno
Public exploityes
Published2012-10-25
Last modified2026-06-16

Affected (3)

VendorProduct
microsoftexcel
microsoftexcel viewer
microsoftoffice

Public exploits

SourceTitleDate
exploit-dbMicrosoft Excel - Denial of Service2012-10-11

References

→ the Explorer  ·  watch your stack  ·  NVD