CVE-1999-0354
Internet Explorer 4.x or 5.x with Word 97 - Arbitrary Visual Basic Execution via Word Template
Title source: llmDescription
Internet Explorer 4.x or 5.x with Word 97 allows arbitrary execution of Visual Basic programs to the IE client through the Word 97 template, which doesn't warn the user that the template contains executable content. Also applies to Outlook when the client views a malicious email message.
References (1)
Core 1
Core References
Vendor Advisory vendor-advisory
x_refsource_ms
https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-002
Scores
EPSS
0.0511
EPSS Percentile
91.6%
Details
Status
published
Products (3)
microsoft/internet_explorer
4.0
microsoft/internet_explorer
5.0
microsoft/word
97
Published
Nov 01, 1999
Tracked Since
Feb 18, 2026