CVE-2002-0861
https://notcve.org/view.php?id=CVE-2002-0861
Microsoft Office Web Components (OWC) 2000 and 2002 allows remote attackers to bypass the "Allow paste operations via script" setting, even when it is disabled, via the (1) Copy method of the Cell object or (2) the Paste method of the Range object. Microsoft Office Web Components (OWC) 2000 y 2002 permite a atacantes remotos sortear la configuración de "Permitir pegar mediante script", incluso cuando está desactivada, mediante: el método Copy del objeto Cell (celda) el método Paste (pegar) del objeto Range (rango) • http://marc.info/?l=bugtraq&m=101829726516346&w=2 http://www.iss.net/security_center/static/8779.php http://www.securityfocus.com/bid/4457 https://docs.microsoft.com/en-us/security-updates/securitybulletins/2002/ms02-044 •
CVE-2000-0419
https://notcve.org/view.php?id=CVE-2000-0419
The Office 2000 UA ActiveX Control is marked as "safe for scripting," which allows remote attackers to conduct unauthorized activities via the "Show Me" function in Office Help, aka the "Office 2000 UA Control" vulnerability. • http://www.cert.org/advisories/CA-2000-07.html http://www.microsoft.com/technet/support/kb.asp?ID=262767 http://www.securityfocus.com/bid/1197 https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-034 •