Memory Corruption Vulnerability in Microsoft Office Products
CVE-2016-7234
7.8HIGH
Key Information:
- Vendor
- Microsoft
- Vendor
- CVE Published:
- 10 November 2016
Summary
The memory corruption vulnerability in Microsoft Office products allows remote attackers to execute arbitrary code. This occurs when a crafted Office document is opened, leading to potential exploitation and unauthorized actions within the affected systems. Various versions of Word and Excel for both Windows and Mac platforms are impacted, highlighting the importance of updating to the latest patches to mitigate any risk from malicious files.
References
EPSS Score
38% chance of being exploited in the next 30 days.
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved