Security Advisory

CVE-2008-3003

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2008-08-12 23:00:00
Last updated 2024-08-07 09:21:34
Assigner microsoft
CVSS score not scored
State PUBLISHED

Description

Microsoft Office Excel 2007 Gold and SP1 does not properly delete the PWD (password) string from connections.xml when a .xlsx file is configured not to save the remote data session password, which allows local users to obtain sensitive information and obtain access to a remote data source, aka the "Excel Credential Caching Vulnerability."