Show plain JSON{"id": "CVE-2008-4019", "cveTags": [], "metrics": {"cvssMetricV2": [{"type": "Primary", "source": "nvd@nist.gov", "cvssData": {"version": "2.0", "baseScore": 9.3, "accessVector": "NETWORK", "vectorString": "AV:N/AC:M/Au:N/C:C/I:C/A:C", "authentication": "NONE", "integrityImpact": "COMPLETE", "accessComplexity": "MEDIUM", "availabilityImpact": "COMPLETE", "confidentialityImpact": "COMPLETE"}, "acInsufInfo": false, "impactScore": 10.0, "baseSeverity": "HIGH", "obtainAllPrivilege": true, "exploitabilityScore": 8.6, "obtainUserPrivilege": false, "obtainOtherPrivilege": false, "userInteractionRequired": true}]}, "published": "2008-10-15T00:12:15.943", "references": [{"url": "http://marc.info/?l=bugtraq&m=122479227205998&w=2", "tags": ["Issue Tracking", "Mailing List", "Third Party Advisory"], "source": "secure@microsoft.com"}, {"url": "http://marc.info/?l=bugtraq&m=122479227205998&w=2", "tags": ["Issue Tracking", "Mailing List", "Third Party Advisory"], "source": "secure@microsoft.com"}, {"url": "http://secunia.com/advisories/32211", "tags": ["Patch", "Vendor Advisory"], "source": "secure@microsoft.com"}, {"url": "http://www.securityfocus.com/bid/31706", "tags": ["Patch", "Third Party Advisory", "VDB Entry"], "source": "secure@microsoft.com"}, {"url": "http://www.securitytracker.com/id?1021044", "tags": ["Third Party Advisory", "VDB Entry"], "source": "secure@microsoft.com"}, {"url": "http://www.us-cert.gov/cas/techalerts/TA08-288A.html", "tags": ["Third Party Advisory", "US Government Resource"], "source": "secure@microsoft.com"}, {"url": "http://www.vupen.com/english/advisories/2008/2808", "tags": ["Third Party Advisory"], "source": "secure@microsoft.com"}, {"url": "https://docs.microsoft.com/en-us/security-updates/securitybulletins/2008/ms08-057", "tags": ["Patch", "Vendor Advisory"], "source": "secure@microsoft.com"}, {"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/45580", "tags": ["Third Party Advisory", "VDB Entry"], "source": "secure@microsoft.com"}, {"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/45581", "tags": ["Third Party Advisory", "VDB Entry"], "source": "secure@microsoft.com"}, {"url": "https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6102", "tags": ["Third Party Advisory"], "source": "secure@microsoft.com"}, {"url": "http://marc.info/?l=bugtraq&m=122479227205998&w=2", "tags": ["Issue Tracking", "Mailing List", "Third Party Advisory"], "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "http://marc.info/?l=bugtraq&m=122479227205998&w=2", "tags": ["Issue Tracking", "Mailing List", "Third Party Advisory"], "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "http://secunia.com/advisories/32211", "tags": ["Patch", "Vendor Advisory"], "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "http://www.securityfocus.com/bid/31706", "tags": ["Patch", "Third Party Advisory", "VDB Entry"], "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "http://www.securitytracker.com/id?1021044", "tags": ["Third Party Advisory", "VDB Entry"], "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "http://www.us-cert.gov/cas/techalerts/TA08-288A.html", "tags": ["Third Party Advisory", "US Government Resource"], "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "http://www.vupen.com/english/advisories/2008/2808", "tags": ["Third Party Advisory"], "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "https://docs.microsoft.com/en-us/security-updates/securitybulletins/2008/ms08-057", "tags": ["Patch", "Vendor Advisory"], "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/45580", "tags": ["Third Party Advisory", "VDB Entry"], "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/45581", "tags": ["Third Party Advisory", "VDB Entry"], "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6102", "tags": ["Third Party Advisory"], "source": "af854a3a-2127-422b-91ae-364da2661108"}], "vulnStatus": "Deferred", "weaknesses": [{"type": "Primary", "source": "nvd@nist.gov", "description": [{"lang": "en", "value": "CWE-190"}]}], "descriptions": [{"lang": "en", "value": "Integer overflow in the REPT function in Microsoft Excel 2000 SP3, 2002 SP3, 2003 SP2 and SP3, and 2007 Gold and SP1; Office Excel Viewer 2003 SP3; Office Excel Viewer; Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats Gold and SP1; Office SharePoint Server 2007 Gold and SP1; Office 2004 and 2008 for Mac; and Open XML File Format Converter for Mac allows remote attackers to execute arbitrary code via an Excel file containing a formula within a cell, aka \"Formula Parsing Vulnerability.\""}, {"lang": "es", "value": "Desbordamiento de entero en la funci\u00f3n REPT en Microsoft Excel 2000 SP3, 2002 SP3, 2003 SP2 and SP3, y 2007 Gold y SP1; Office Excel Viewer 2003 SP3; Office Excel Viewer; Office Compatibility Pack para Word, Excel, y PowerPoint 2007 File Formats Gold y SP1; Office SharePoint Server 2007 Gold y SP1; Office 2004 y 2008 para Mac; y Open XML File Format Converter para Mac, permite a atacantes remotos ejecutar c\u00f3digo de su elecci\u00f3n a trav\u00e9s de un archivo Excel con una f\u00f3rmula dentro de una celda. Tambi\u00e9n conocida como \"Vulnerabilidad de validaci\u00f3n de F\u00f3rmula\"."}], "lastModified": "2025-04-09T00:30:58.490", "configurations": [{"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:a:microsoft:excel:2003:sp2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A07483B7-E30C-43F3-B54B-2864BE9AD704"}, {"criteria": "cpe:2.3:a:microsoft:excel:2003:sp3:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CEBB33CD-CACF-4EB8-8B5F-8E1CB8D7A440"}, {"criteria": "cpe:2.3:a:microsoft:excel:2007:-:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BB7D84EE-5AF2-44AF-AFA1-7BB555AA0B4A"}, {"criteria": "cpe:2.3:a:microsoft:excel:2007:sp1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F703901F-AD7C-42E7-BBFA-529A8C510D83"}, {"criteria": "cpe:2.3:a:microsoft:excel_viewer:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EEAAF38A-FE97-40FC-9BBF-763785853DCC"}, {"criteria": "cpe:2.3:a:microsoft:excel_viewer:2003:-:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1F005DF3-BA80-49D0-B2B1-06DFD74ED9F7"}, {"criteria": "cpe:2.3:a:microsoft:excel_viewer:2003:sp3:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AE2F0B8B-0600-4324-93A9-07DBE97E1BB8"}, {"criteria": "cpe:2.3:a:microsoft:office:2004:*:*:*:*:macos:*:*", "vulnerable": true, "matchCriteriaId": "0B191155-67F2-4C6E-BD0C-AF5AF6F04BA1"}, {"criteria": "cpe:2.3:a:microsoft:office:2008:*:*:*:*:macos:*:*", "vulnerable": true, "matchCriteriaId": "421ACF1B-1B21-4416-98ED-BAA5C210EAE5"}, {"criteria": "cpe:2.3:a:microsoft:office_compatibility_pack:2007:-:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7C150805-6157-43E3-A913-E021F97E7F59"}, {"criteria": "cpe:2.3:a:microsoft:office_compatibility_pack:2007:sp1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C5C94F2C-786B-45E4-B80A-FC668D917014"}, {"criteria": "cpe:2.3:a:microsoft:open_xml_file_format_converter:-:*:*:*:*:macos:*:*", "vulnerable": true, "matchCriteriaId": "4BC69733-551E-4535-B851-4A3EF71E98CD"}, {"criteria": "cpe:2.3:a:microsoft:sharepoint_server:2007:*:*:*:*:*:x64:*", "vulnerable": true, "matchCriteriaId": "6CD4AE15-F3AA-4661-8466-36C2866C0457"}, {"criteria": "cpe:2.3:a:microsoft:sharepoint_server:2007:-:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F537E651-28E9-4CA5-AA54-E59F7DAA08E9"}, {"criteria": "cpe:2.3:a:microsoft:sharepoint_server:2007:sp1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CF3C2971-447B-4054-86C6-3169B82E525B"}, {"criteria": "cpe:2.3:a:microsoft:sharepoint_server:2007:sp1:*:*:*:*:x64:*", "vulnerable": true, "matchCriteriaId": "BA4BFFB7-4173-423E-A2E5-9F49B3836132"}], "operator": "OR"}]}], "sourceIdentifier": "secure@microsoft.com"}