CVE-2000-0325
EXPLOITEDMicrosoft Jet - Remote Code Execution via Database Query
Title source: llmExploitation Summary
CVE-2000-0325 has been observed exploited in the wild (reported by VulnCheck KEV). EIP tracks 1 public exploit from researchers including BrootForce.
AI-analyzed exploit summary This HTML file demonstrates CVE-2000-0325 by embedding a malicious Excel file (shell.xls) that executes arbitrary commands via VBA when opened. The exploit leverages the Jet 3.51/4.0 vulnerability to run shell commands without macro warnings.
Description
The Microsoft Jet database engine allows an attacker to execute commands via a database query, aka the "VBA Shell" vulnerability.
Exploits (1)
This HTML file demonstrates CVE-2000-0325 by embedding a malicious Excel file (shell.xls) that executes arbitrary commands via VBA when opened. The exploit leverages the Jet 3.51/4.0 vulnerability to run shell commands without macro warnings.