Memory Corruption Vulnerability in Microsoft Office Products
CVE-2016-7234

7.8HIGH

Key Information:

Vendor
Microsoft
Vendor
CVE Published:
10 November 2016

Summary

The memory corruption vulnerability in Microsoft Office products allows remote attackers to execute arbitrary code. This occurs when a crafted Office document is opened, leading to potential exploitation and unauthorized actions within the affected systems. Various versions of Word and Excel for both Windows and Mac platforms are impacted, highlighting the importance of updating to the latest patches to mitigate any risk from malicious files.

References

EPSS Score

38% chance of being exploited in the next 30 days.

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.