CVE-2011-0978

Microsoft Excel - Memory Corruption

Title source: rule
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2011-0978. PoCs published by webDEViL.

AI-analyzed exploit summary This is a proof-of-concept exploit for CVE-2011-0978, targeting a buffer overflow vulnerability in Microsoft Office Excel's Axis Properties Record parsing. The exploit manipulates specific file locations to trigger the overflow, potentially leading to remote code execution.

Description

Stack-based buffer overflow in Microsoft Excel 2002 SP3, 2003 SP3, and 2007 SP2; Office 2004 for Mac; Excel Viewer SP2; and Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats SP2 allows remote attackers to execute arbitrary code via vectors related to an axis properties record, and improper incrementing of an array index, aka "Excel Array Indexing Vulnerability."

Exploits (1)

exploitdb WORKING POC VERIFIED
by webDEViL · pythondoswindows
https://www.exploit-db.com/exploits/17227

This is a proof-of-concept exploit for CVE-2011-0978, targeting a buffer overflow vulnerability in Microsoft Office Excel's Axis Properties Record parsing. The exploit manipulates specific file locations to trigger the overflow, potentially leading to remote code execution.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: Microsoft Office Excel (versions affected by MS11-021)
No auth needed
Prerequisites: Victim must open a malicious Excel file
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (10)

Core 10
Core References
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A12439
US Government Resource third-party-advisory x_refsource_cert
http://www.us-cert.gov/cas/techalerts/TA11-102A.html
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/39122
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/43232
Third Party Advisory x_refsource_misc
http://zerodayinitiative.com/advisories/ZDI-11-042/
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id?1025337
Third Party Advisory third-party-advisory x_refsource_sreason
http://securityreason.com/securityalert/8231
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2011/0940

Scores

EPSS 0.4256
EPSS Percentile 98.5%

Details

CWE
CWE-119
Status published
Products (6)
microsoft/excel 2002 sp3
microsoft/excel 2003 sp3
microsoft/excel 2007 sp2
microsoft/excel_viewer
microsoft/office 2004
microsoft/office_compatibility_pack 2007 sp2
Published Feb 10, 2011
Tracked Since Feb 18, 2026