CVE-1999-0794

Microsoft Excel - Unauthenticated Arbitrary Macro Execution via SYLK File

Title source: llm
STIX 2.1

Description

Microsoft Excel does not warn a user when a macro is present in a Symbolic Link (SYLK) format file.

References (4)

Core 4
Core References
Vendor Advisory vendor-advisory x_refsource_mskb
http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ241902
Vendor Advisory vendor-advisory x_refsource_mskb
http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ241900
Vendor Advisory vendor-advisory x_refsource_mskb
http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ241901

Scores

EPSS 0.0148
EPSS Percentile 70.6%

Details

CWE
CWE-59
Status published
Products (1)
microsoft/excel
Published Oct 01, 1999
Tracked Since Feb 18, 2026