CVE-2014-3524

Apache Openoffice < 4.1.1 - Command Injection

Title source: rule

Description

Apache OpenOffice before 4.1.1 allows remote attackers to execute arbitrary commands and possibly have other unspecified impact via a crafted Calc spreadsheet.

Scores

EPSS 0.1232
EPSS Percentile 93.7%

Classification

CWE
CWE-77
Status draft

Affected Products (2)

apache/openoffice < 4.1.1
libreoffice/libreoffice < 4.2.6

Timeline

Published Aug 26, 2014
Tracked Since Feb 18, 2026