VYPR
Unrated severityNVD Advisory· Published Sep 19, 2014· Updated May 6, 2026

CVE-2006-1318

CVE-2006-1318

Description

Microsoft Office 2003 SP1 and SP2, Office XP SP3, Office 2000 SP3, Office 2004 for Mac, and Office X for Mac do not properly parse record lengths, which allows remote attackers to execute arbitrary code via a malformed control in an Office document, aka "Microsoft Office Control Vulnerability."

Affected products

5
  • Microsoft/Office5 versions
    cpe:2.3:a:microsoft:office:2000:sp1:*:*:*:*:*:*+ 4 more
    • cpe:2.3:a:microsoft:office:2000:sp1:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:office:2000:sp2:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:office:2004:*:mac:*:*:*:*:*
    • cpe:2.3:a:microsoft:office:x:*:mac:*:*:*:*:*
    • cpe:2.3:a:microsoft:office:xp:sp3:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.