CVE-2009-0565
Microsoft Office Word 2000 SP3, 2002 SP3, 2007 SP1-SP2 - Remote Code Execution via Malformed Record
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2009-0565. PoCs published by Andrew King, anonymous.
AI-analyzed exploit summary This is a Metasploit module for CVE-2009-0565, a buffer overflow vulnerability in Microsoft Word's record parsing. It generates a malicious .doc file with embedded shellcode to achieve remote code execution on vulnerable systems.
Description
Buffer overflow in Microsoft Office Word 2000 SP3, 2002 SP3, and 2007 SP1 and SP2; Microsoft Office for Mac 2004 and 2008; Open XML File Format Converter for Mac; and Microsoft Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats SP1 and SP2 allows remote attackers to execute arbitrary code via a Word document with a malformed record that triggers memory corruption, aka "Word Buffer Overflow Vulnerability."
Exploits (2)
This is a Metasploit module for CVE-2009-0565, a buffer overflow vulnerability in Microsoft Word's record parsing. It generates a malicious .doc file with embedded shellcode to achieve remote code execution on vulnerable systems.
This exploit leverages a buffer overflow vulnerability in Microsoft Word's record parsing functionality (CVE-2009-0565) to achieve remote code execution. It constructs a malicious Word document with a compressed payload containing shellcode to spawn calc.exe.