CVE-2013-1331

HIGH KEV

Microsoft Office <2011 - RCE

Title source: llm

Description

Buffer overflow in Microsoft Office 2003 SP3 and Office 2011 for Mac allows remote attackers to execute arbitrary code via crafted PNG data in an Office document, leading to improper memory allocation, aka "Office Buffer Overflow Vulnerability."

Scores

CVSS v3 7.8
EPSS 0.8892
EPSS Percentile 99.5%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Details

CISA KEV 2022-06-08
VulnCheck KEV 2016-04-01
InTheWild.io 2018-10-12
ENISA EUVD EUVD-2013-1371
CWE
CWE-120
Status published
Products (2)
microsoft/office 2003 sp3
microsoft/office 2011
Published Jun 12, 2013
KEV Added Jun 08, 2022
Tracked Since Feb 18, 2026