CVE-2017-0105
CVE-2017-0105
Vexday Risk Score
15Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 30.4%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
17 Mar 2017Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word for Mac 2011, Office Compatibility Pack SP3, Word Automation Services on SharePoint Server 2010 SP2, and Office Web Apps 2010 SP2 allow remote attackers to obtain sensitive information from out-of-bound memory via a crafted Office document, aka "Microsoft Office Information Disclosure Vulnerability."
Affected products
Microsoft Corporation · OfficeWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →