Microsoft Office 2010, Microsoft Office 2013, and Microsoft Office 2016 allow a remote code execution vulnerability due to the way RTF content is handled, aka "Microsoft Word Memory Corruption Vulnerability".
2018-01-10T01:29:00.680
2024-11-21T03:38:58.187
Modified
CVSSv3.0: 7.8 (HIGH)
AV:N/AC:M/Au:N/C:C/I:C/A:C
8.6
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | microsoft | office | 2010 | Yes |
Application | microsoft | office | 2016 | Yes |
Application | microsoft | office_compatibility_pack | - | Yes |
Application | microsoft | office_online_server | 2016 | Yes |
Application | microsoft | office_web_apps | 2010 | Yes |
Application | microsoft | office_web_apps | 2010 | Yes |
Application | microsoft | office_web_apps_server | 2013 | Yes |
Application | microsoft | sharepoint_enterprise_server | 2013 | Yes |
Application | microsoft | sharepoint_enterprise_server | 2016 | Yes |
Application | microsoft | sharepoint_server | 2010 | Yes |
Application | microsoft | word | 2007 | Yes |
Application | microsoft | word | 2010 | Yes |
Application | microsoft | word | 2013 | Yes |
Application | microsoft | word | 2013 | Yes |
Application | microsoft | word | 2016 | Yes |
Application | microsoft | word_viewer | * | Yes |