« Volver al listado

CVE-2001-0501

Estado: ModificadaMedia (4.6)—

Microsoft Word 2002 and earlier allows attackers to automatically execute macros without warning the user by embedding the macros in a manner that escapes detection by the security scanner.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (1)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2001-0501",
  "cveTags": [],
  "metrics": {
    "cvssMetricV2": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "version": "2.0",
          "baseScore": 4.6,
          "accessVector": "LOCAL",
          "vectorString": "AV:L/AC:L/Au:N/C:P/I:P/A:P",
          "authentication": "NONE",
          "integrityImpact": "PARTIAL",
          "accessComplexity": "LOW",
          "availabilityImpact": "PARTIAL",
          "confidentialityImpact": "PARTIAL"
        },
        "acInsufInfo": false,
        "impactScore": 6.4,
        "baseSeverity": "MEDIUM",
        "obtainAllPrivilege": false,
        "exploitabilityScore": 3.9,
        "obtainUserPrivilege": false,
        "obtainOtherPrivilege": false,
        "userInteractionRequired": false
      }
    ]
  },
  "affected": [
    {
      "source": "cve@mitre.org",
      "affectedData": [
        {
          "vendor": "n/a",
          "product": "n/a",
          "versions": [
            {
              "status": "affected",
              "version": "n/a"
            }
          ]
        }
      ]
    }
  ],
  "published": "2001-07-21T04:00:00.000",
  "references": [
    {
      "url": "http://marc.info/?l=bugtraq&m=99325144322224&w=2",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.securityfocus.com/bid/2876",
      "tags": [
        "Patch",
        "Vendor Advisory"
      ],
      "source": "cve@mitre.org"
    },
    {
      "url": "https://docs.microsoft.com/en-us/security-updates/securitybulletins/2001/ms01-034",
      "source": "cve@mitre.org"
    },
    {
      "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/6732",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://marc.info/?l=bugtraq&m=99325144322224&w=2",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.securityfocus.com/bid/2876",
      "tags": [
        "Patch",
        "Vendor Advisory"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "https://docs.microsoft.com/en-us/security-updates/securitybulletins/2001/ms01-034",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/6732",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "NVD-CWE-Other"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "Microsoft Word 2002 and earlier allows attackers to automatically execute macros without warning the user by embedding the macros in a manner that escapes detection by the security scanner."
    }
  ],
  "lastModified": "2026-06-16T21:54:25.543",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:microsoft:word:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "379E92A7-225D-4941-A349-582E9AD7D050",
              "versionEndIncluding": "2002"
            },
            {
              "criteria": "cpe:2.3:a:microsoft:word:97:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "645B78F8-9AD7-4707-9CAD-5DC79475D971"
            },
            {
              "criteria": "cpe:2.3:a:microsoft:word:97:sr1:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "FAC7BEA9-AA9B-4FFA-BC09-DD41F7E3EAC8"
            },
            {
              "criteria": "cpe:2.3:a:microsoft:word:97:sr2:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "682961C4-A208-403F-8C3B-1E08F0414EDD"
            },
            {
              "criteria": "cpe:2.3:a:microsoft:word:98:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "E56F9283-7EE3-4F50-AFB6-09CDC06A5121"
            },
            {
              "criteria": "cpe:2.3:a:microsoft:word:98:*:mac:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "9906CF1D-CCBB-4A23-A519-C22364043C38"
            },
            {
              "criteria": "cpe:2.3:a:microsoft:word:2000:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "AEBFF713-0884-43BF-9AB8-777664FD64AF"
            },
            {
              "criteria": "cpe:2.3:a:microsoft:word:2000:sr1:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "FEE7CC21-A458-49BB-B437-D5DF09339D83"
            },
            {
              "criteria": "cpe:2.3:a:microsoft:word:2000:sr1a:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "8CFD9BC0-8755-4C3B-A198-A7F2DEFA82AD"
            },
            {
              "criteria": "cpe:2.3:a:microsoft:word:2000:sr2:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "9F1BF285-B35A-483E-8834-57589C3BA574"
            },
            {
              "criteria": "cpe:2.3:a:microsoft:word:2001:*:mac:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "2B8E130D-ADE4-49DA-9362-3433CCC5B05C"
            }
          ],
          "operator": "OR"
        }
      ]
    }
  ],
  "sourceIdentifier": "cve@mitre.org"
}