CVE-1999-1055

CVSS 2.0 Score 7.5 of 10 (high)

Details

Published Dec 31, 1999
Updated: Nov 20, 2024

Summary

CVE-1999-1055 is a vulnerability affecting Microsoft Excel 97. This issue permits attackers to execute arbitrary commands by exploiting the lack of warning before Excel executes worksheet functions. By using the CALL function to run a malicious DLL, attackers can bypass security measures and gain unauthorized system access. This vulnerability poses a significant risk to users who open potentially malicious Excel files.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Microsoft Office Excel

Affected Vendors

  • Microsoft