CVE-2011-3400
60Vexday Risk Score
Patch soon. It has a working public exploit.
ssvc Attendepss 72%
from disclosure to weapon175 days
Published on NVDDec 14
1st PoC+175d
metasploitDec 13
exploitation probability
72%top 1% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
Microsoft Windows XP SP2 and SP3 and Server 2003 SP2 do not properly handle OLE objects in memory, which allows remote attackers to execute arbitrary code via a crafted object in a file, aka "OLE Property Vulnerability."
Affected products
n/a · n/apublic PoCs found — 1
exploitdbwww.exploit-db.com/exploits/19002unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.