← Browse

CVE-2006-1316

Medium

Elevated severity or exploit probability.

CVSS base
9.3 HIGH
AV:N/AC:M/Au:N/C:C/I:C/A:C
EPSS — probability of exploitation (30 days)
15.2%
96.6th percentile
CISA KEV
Not listed
Weakness / dates
CWE-94
Published 2006-07-11 · modified 2026-09-23

CVSS breakdown

AV:N/AC:M/Au:N/C:C/I:C/A:C

Attack VectorNNetwork
Attack ComplexityMMedium
AuthenticationNNone
ConfidentialityCComplete
IntegrityCComplete
AvailabilityCComplete

Timeline

Description

Unspecified vulnerability in Microsoft Office 2003 SP1 and SP2, Office XP SP3, Office 2000 SP3, and other products, allows user-assisted attackers to execute arbitrary code via an Office file with malformed string that triggers memory corruption related to record lengths, aka "Microsoft Office Parsing Vulnerability," a different vulnerability than CVE-2006-2389.

Affected

microsoft

References

Official: NVD · CVE.org