CVE-2001-0501

Microsoft Word < 2002 - Unauthenticated Macro Execution via Embedded Macro Bypass

Title source: llm
STIX 2.1

Description

Microsoft Word 2002 and earlier allows attackers to automatically execute macros without warning the user by embedding the macros in a manner that escapes detection by the security scanner.

References (4)

Core 4
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/6732
Patch, Vendor Advisory vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/2876
Mailing List mailing-list x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=99325144322224&w=2

Scores

EPSS 0.0167
EPSS Percentile 74.5%

Details

Status published
Products (5)
microsoft/word 97 (3 CPE variants)
microsoft/word 98 (2 CPE variants)
microsoft/word 2000 (4 CPE variants)
microsoft/word 2001
microsoft/word < 2002
Published Jul 21, 2001
Tracked Since Feb 18, 2026