← Back to CVE List
Vulnerability Intelligence Report

CVE-2003-0347

Heap-based buffer overflow in VBE.DLL and VBE6.DLL of Microsoft Visual Basic for Applications (VBA) SDK 5.0 through 6.3 allows remote attackers to execute arbitrary code via a document with a long ID parameter.

No Active Exploit Signals
CVSS Base Score
10.0
HIGH
EPSS Probability:68.32%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
Authentication
Weaponization
SSVC Action

Affected Products & Versions

Vendor Product Affected Versions
microsoft office 2000, xp
microsoft project 2000, 2002
microsoft visio 2002
microsoft visual_basic 5.0, 6.2, 6.3

References & Technical Advisories

No reference links found.

Threat Intelligence Signals

EPSS Score
68.321%

Identity & Timeline

StatusPUBLISHED
Assigning AuthorityMITRE Corporation · N/A · USA
Reserved2003-05-28T00:00:00
Published2003-09-04T04:00:00
Patch Date2003-09-03
Last Updated2024-08-08T01:50:47

LINK COPIED TO CLIPBOARD