ESRI ArcMap 9 and ArcGIS 10.0.2.3200 and earlier does not properly prompt users before executing embedded VBA macros, which allows user-assisted remote attackers to execute arbitrary VBA code via a crafted map (.mxd) file.
Metrics
Affected Vendors & Products
References
History
Thu, 10 Oct 2024 15:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
CPEs | cpe:2.3:a:esri:arcgis:9.0:*:*:*:*:*:*:* cpe:2.3:a:esri:arcmap:9.0:*:*:*:*:*:*:* |
cpe:2.3:a:esri:arcmap:*:*:*:*:*:*:*:* |
Vendors & Products |
Esri arcgis
|

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-09-16T23:46:27.819Z
Reserved: 2012-03-13T00:00:00Z
Link: CVE-2012-1661

No data.

Status : Deferred
Published: 2012-07-12T21:55:04.750
Modified: 2025-04-11T00:51:21.963
Link: CVE-2012-1661

No data.