Page 2 of 10 results (0.003 seconds)

CVSS: 7.6EPSS: 1%CPEs: 24EXPL: 0

OpenOffice.org (aka StarOffice) 1.1.x up to 1.1.5 and 2.0.x before 2.0.3 allows user-assisted attackers to conduct unauthorized activities via an OpenOffice document with a malicious BASIC macro, which is executed without prompting the user. OpenOffice.org (también conocido como StarOffice) v1.1.x a v1.1.5 y v2.0.x anteriores a v2.0.3 permite a los atacantes de usuarios asistidos conducir actividades no autorizadas a través de un documento OpenOffice con una macro BASIC maliciosa, lo que es ejecutad sin confirmación al usuario. • http://fedoranews.org/cms/node/2343 http://secunia.com/advisories/20867 http://secunia.com/advisories/20893 http://secunia.com/advisories/20910 http://secunia.com/advisories/20911 http://secunia.com/advisories/20913 http://secunia.com/advisories/20975 http://secunia.com/advisories/20995 http://secunia.com/advisories/21278 http://secunia.com/advisories/22129 http://secunia.com/advisories/23620 http://security.gentoo.org/glsa/glsa-200607-12.xml http://securitytracker.com • CWE-264: Permissions, Privileges, and Access Controls •

CVSS: 3.6EPSS: 0%CPEs: 1EXPL: 1

StarOffice 5.2 follows symlinks and sets world-readable permissions for the /tmp/soffice.tmp directory, which allows a local user to read files of the user who is using StarOffice. • http://archives.neohapsis.com/archives/bugtraq/2000-11/0115.html http://www.securityfocus.com/bid/1922 https://exchange.xforce.ibmcloud.com/vulnerabilities/5487 •

CVSS: 4.6EPSS: 0%CPEs: 1EXPL: 1

Buffer overflow in Star Office 5.1 allows attackers to cause a denial of service by embedding a long URL within a document. • http://archives.neohapsis.com/archives/bugtraq/2000-04/0077.html http://www.securityfocus.com/bid/1112 •

CVSS: 5.0EPSS: 0%CPEs: 1EXPL: 1

StarOffice StarScheduler web server allows remote attackers to read arbitrary files via a .. (dot dot) attack. • https://www.exploit-db.com/exploits/19797 http://archives.neohapsis.com/archives/bugtraq/2000-03/0063.html http://www.securityfocus.com/bid/1040 •

CVSS: 10.0EPSS: 0%CPEs: 1EXPL: 0

Buffer overflow in StarOffice StarScheduler web server allows remote attackers to gain root access via a long GET command. • http://archives.neohapsis.com/archives/bugtraq/2000-03/0063.html http://www.securityfocus.com/bid/1039 •