CVE-2008-7217

Microsoft Office 2008 for Mac - Privilege Escalation

Title source: llm
STIX 2.1

Description

Microsoft Office 2008 for Mac, when running on Macintosh systems that restrict Office access to administrators, does not enforce this restriction for user ID 502, which allows local users with that ID to bypass intended security policy and access Office programs, related to permissions and ownership for certain directories.

References (2)

Core 2
Core References
Vendor Advisory vendor-advisory x_refsource_mskb
http://support.microsoft.com/default.aspx?scid=kb%3BEN-US%3B948488
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/44959

Scores

EPSS 0.0139
EPSS Percentile 69.7%

Details

CWE
CWE-264
Status published
Products (1)
microsoft/office 2008
Published Sep 13, 2009
Tracked Since Feb 18, 2026