CVE-2009-0238CISA KEVEPSS p98.6%

CVE-2009-0238Microsoft Office Remote Code Execution

Microsoft / Office

Description

Microsoft Office Excel contains a remote code execution vulnerability that could allow an attacker to take complete control of an affected system if a user opens a specially crafted Excel file that includes a malformed object.

Scoring

EPSS43.06% probability of exploitation · percentile 98.6% · 2026-06-18T12:00:27Z

CISA KEV entry

Added to KEV: 2026-04-14

(incoming)1

TypeTargetConfidenceTier
KEVEntryMicrosoft Office Remote Code Executionkev-cve-2009-02380%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CVE
Microsoft Office Object Record Corruption Vulnerability
CVE
Microsoft Office Excel Remote Code Execution Vulnerability
CVE
Microsoft Excel Remote Code Execution Vulnerability
CVE
Microsoft Office Remote Code Execution Vulnerability
CVE
Microsoft Office Memory Corruption Vulnerability
CVE
Microsoft Office Buffer Overflow Vulnerability
Sourced from NVD + CISA KEV + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.