PT-2017-2152 · Microsoft · Office

Genwei Jiang

+2

·

Published

2017-05-09

·

Updated

2025-02-11

·

CVE-2017-0262

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Microsoft Office (affected versions not specified)
Description The issue is related to the improper handling of data in Microsoft Office, which can be exploited by a remote attacker to execute arbitrary code. The exploitation can occur when a user opens a specially crafted file in EPS format or inserts a malformed graphic image into an Office file. Such files can also be attached to emails. If the exploitation is successful, the attacker can gain control over the system.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Weakness Enumeration

Related Identifiers

BDU:2017-01345
CVE-2017-0262

Affected Products

Office