← Back to CVE List
Vulnerability Intelligence Report
Microsoft Office Excel Remote Code Execution Vulnerability

CVE-2007-0671

Unspecified vulnerability in Microsoft Excel 2000, XP, 2003, and 2004 for Mac, and possibly other Office products, allows remote user-assisted attackers to execute arbitrary code via unknown attack vectors, as demonstrated by Exploit-MSExcel.h in targeted zero-day attacks.

CISA KEV SSVC: Active Exploitation
CVSS Base Score
8.8
HIGH
Exploitability:2.9
Impact Score:5.9
EPSS Probability:42.14%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
Authentication
Weaponization
SSVC Action

Affected Products & Versions

Vendor Product Affected Versions
microsoft access 2000, 2002, 2003
microsoft excel 2000, 2002, 2003
microsoft excel_viewer 2003
microsoft frontpage 2000, 2002, 2003
microsoft infopath 2003
microsoft office 2000, 2003, 2004, xp
microsoft onenote 2003
microsoft outlook 2000, 2002, 2003
microsoft powerpoint 2000, 2002, 2003
microsoft project 2000, 2002, 2003
microsoft publisher 2000, 2002, 2003
microsoft visio 2002, 2003
microsoft word 2000, 2002, 2003
microsoft word_viewer 2003

References & Technical Advisories

No reference links found.

Threat Intelligence Signals

CISA KEV
ACTIVE IN CATALOG
EPSS Score
42.139%

Identity & Timeline

StatusPUBLISHED
Assigning AuthorityMicrosoft Corporation · Vendor · USA
Reserved2007-02-02T00:00:00
Published2007-02-03T01:00:00
Patch Date2007-02-02
Last Updated2026-01-12T21:01:27

LINK COPIED TO CLIPBOARD