CVE-1999-1055

CVSS 2.0 Score 7.5 of 10 (high)

Details

Published Dec 31, 1999
Updated: Nov 20, 2024

Summary

CVE-1999-1055 is a vulnerability affecting Microsoft Excel 97. This issue allows attackers to execute arbitrary commands by using the CALL function to execute a malicious DLL without warning the user. Microsoft Excel 97 fails to alert users before executing worksheet functions, making it easy for attackers to exploit this vulnerability and potentially gain unauthorized access to systems. This security flaw can lead to significant risks, including data theft, system damage, or even complete system takeover. Users are advised to update their software to a more secure version as soon as possible to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Microsoft Office Excel

Affected Vendors

  • Microsoft