CVE-2017-0199
Microsoft Office 2007 SP3, Microsoft Office 2010 SP2, Microsoft Office 2013 SP1, Microsoft Office 2016, Microsoft Windows Vista SP2, Windows Server 2008 SP2, Windows 7 SP1, Windows 8.1 allow remote attackers to execute arbitrary code via a crafted document, aka "Microsoft Office/WordPad Remote Code Execution Vulnerability w/Windows API."
Published
2017-04-12T14:59:01.157
Last Modified
2025-04-20T01:37:25.860
Status
Deferred
Source
[email protected]
Severity
CVSSv3.1: 7.8 (HIGH)
CVSSv2 Vector
AV:N/AC:M/Au:N/C:C/I:C/A:C
- Access Vector: NETWORK
- Access Complexity: MEDIUM
- Authentication: NONE
- Confidentiality Impact: COMPLETE
- Integrity Impact: COMPLETE
- Availability Impact: COMPLETE
Exploitability Score
8.6
Impact Score
10.0
Weaknesses
-
Type: Primary
NVD-CWE-noinfo
Affected Vendors & Products
References
-
http://rewtin.blogspot.nl/2017/04/cve-2017-0199-practical-exploitation-poc.html
Exploit, Third Party Advisory
([email protected])
-
http://www.securityfocus.com/bid/97498
Broken Link, Third Party Advisory, VDB Entry
([email protected])
-
http://www.securitytracker.com/id/1038224
Broken Link, Third Party Advisory, VDB Entry
([email protected])
-
https://blog.nviso.be/2017/04/12/analysis-of-a-cve-2017-0199-malicious-rtf-document/
Exploit, Third Party Advisory
([email protected])
-
https://ics-cert.us-cert.gov/advisories/ICSMA-18-058-02
Third Party Advisory, US Government Resource
([email protected])
-
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-0199
Patch, Vendor Advisory
([email protected])
-
https://www.exploit-db.com/exploits/41894/
Exploit, Third Party Advisory, VDB Entry
([email protected])
-
https://www.exploit-db.com/exploits/41934/
Exploit, Third Party Advisory, VDB Entry
([email protected])
-
https://www.exploit-db.com/exploits/42995/
Third Party Advisory, VDB Entry
([email protected])
-
https://www.fireeye.com/blog/threat-research/2017/04/cve-2017-0199_useda.html
Broken Link, Exploit, Third Party Advisory
([email protected])
-
https://www.mdsec.co.uk/2017/04/exploiting-cve-2017-0199-hta-handler-vulnerability/
Exploit, Third Party Advisory
([email protected])
-
http://rewtin.blogspot.nl/2017/04/cve-2017-0199-practical-exploitation-poc.html
Exploit, Third Party Advisory
(af854a3a-2127-422b-91ae-364da2661108)
-
http://www.securityfocus.com/bid/97498
Broken Link, Third Party Advisory, VDB Entry
(af854a3a-2127-422b-91ae-364da2661108)
-
http://www.securitytracker.com/id/1038224
Broken Link, Third Party Advisory, VDB Entry
(af854a3a-2127-422b-91ae-364da2661108)
-
https://blog.nviso.be/2017/04/12/analysis-of-a-cve-2017-0199-malicious-rtf-document/
Exploit, Third Party Advisory
(af854a3a-2127-422b-91ae-364da2661108)
-
https://ics-cert.us-cert.gov/advisories/ICSMA-18-058-02
Third Party Advisory, US Government Resource
(af854a3a-2127-422b-91ae-364da2661108)
-
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-0199
Patch, Vendor Advisory
(af854a3a-2127-422b-91ae-364da2661108)
-
https://www.exploit-db.com/exploits/41894/
Exploit, Third Party Advisory, VDB Entry
(af854a3a-2127-422b-91ae-364da2661108)
-
https://www.exploit-db.com/exploits/41934/
Exploit, Third Party Advisory, VDB Entry
(af854a3a-2127-422b-91ae-364da2661108)
-
https://www.exploit-db.com/exploits/42995/
Third Party Advisory, VDB Entry
(af854a3a-2127-422b-91ae-364da2661108)
-
https://www.fireeye.com/blog/threat-research/2017/04/cve-2017-0199_useda.html
Broken Link, Exploit, Third Party Advisory
(af854a3a-2127-422b-91ae-364da2661108)
-
https://www.mdsec.co.uk/2017/04/exploiting-cve-2017-0199-hta-handler-vulnerability/
Exploit, Third Party Advisory
(af854a3a-2127-422b-91ae-364da2661108)