AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2008-3003

MEDIUM · CVSS 6.6 EPSS 1.67%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2008-08-12 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 6.6. It affects Microsoft, Office. It may be remotely exploitable.

CVE
CVE-2008-3003
Severity
MEDIUM
CVSS
6.6
EPSS
1.67%
Microsoft Office

Original NVD Description

Microsoft Office Excel 2007 Gold and SP1 does not properly delete the PWD (password) string from connections.xml when a .xlsx file is configured not to save the remote data session password, which allows local users to obtain sensitive information and obtain access to a remote data source, aka the "Excel Credential Caching Vulnerability."