CVE-2017-11934
CVE-2017-11934
Vexday Risk Score
8Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 12.6%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
12 Dec 2017Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Microsoft Office 2013 RT SP1, Microsoft Office 2013 SP1, and Microsoft Office 2016 allow an information disclosure vulnerability due to the way certain functions handle objects in memory, aka "Microsoft Office Information Disclosure Vulnerability".
Affected products
Microsoft Corporation · Microsoft OfficeWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →