CVE-1999-0354

Internet Explorer 4.x or 5.x with Word 97 - Arbitrary Visual Basic Execution via Word Template

Title source: llm
STIX 2.1

Description

Internet Explorer 4.x or 5.x with Word 97 allows arbitrary execution of Visual Basic programs to the IE client through the Word 97 template, which doesn't warn the user that the template contains executable content. Also applies to Outlook when the client views a malicious email message.

References (1)

Core 1
Core References

Scores

EPSS 0.0511
EPSS Percentile 91.6%

Details

Status published
Products (3)
microsoft/internet_explorer 4.0
microsoft/internet_explorer 5.0
microsoft/word 97
Published Nov 01, 1999
Tracked Since Feb 18, 2026