Remote Code Execution Vulnerability in Microsoft Word and SharePoint Products
CVE-2015-0064

Currently unrated

Key Information:

Vendor
Microsoft
Vendor
CVE Published:
11 February 2015

Summary

This vulnerability in Microsoft Word and related products allows attackers to execute arbitrary code or trigger a denial of service through specially crafted Office documents. The affected versions include Microsoft Word 2007 SP3, Office 2010 SP2, and various SharePoint components. Exploiting this vulnerability can lead to unauthorized actions on the target system, emphasizing the need for immediate mitigation measures and awareness of safe document handling practices.

References

EPSS Score

66% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.