← לוח פגיעויות

CVE-2006-3014

טרם דורגה

טרם דורג — בהתאם למדיניות NVD מאפריל 2026, רוב ה-CVE אינם מנותחים מיידית. ציון EPSS (אם קיים) עדיין מוצג.

תיאור (מקור, אנגלית)

Microsoft Excel allows user-assisted attackers to execute arbitrary javascript and redirect users to arbitrary sites via an Excel spreadsheet with an embedded Shockwave Flash Player ActiveX Object, which is automatically executed when the user opens the spreadsheet.

מדדים

EPSS — סבירות ניצול
30% (אחוזון 100) נכון ל-23/9/2026
CWE
CWE-20

מוצרים מושפעים

microsoft: excel

קישורים