CVE-2010-3142

Microsoft Office PowerPoint 2007 - RCE

Title source: llm

Description

Untrusted search path vulnerability in Microsoft Office PowerPoint 2007 allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse rpawinet.dll that is located in the same folder as a .odp, .pothtml, .potm, .potx, .ppa, .ppam, .pps, .ppt, .ppthtml, .pptm, .pptxml, .pwz, .sldm, .sldx, and .thmx file.

Exploits (2)

exploitdb WORKING POC
by storm · clocalwindows
https://www.exploit-db.com/exploits/14782
exploitdb WORKING POC
by TheLeader · clocalwindows
https://www.exploit-db.com/exploits/14723

Scores

EPSS 0.1033
EPSS Percentile 93.2%

Details

Status published
Products (1)
microsoft/powerpoint 2007
Published Aug 27, 2010
Tracked Since Feb 18, 2026