PT-2017-2152 · Microsoft · Office
Genwei Jiang
+2
·
Published
2017-05-09
·
Updated
2025-02-11
·
CVE-2017-0262
CVSS v2.0
9.3
High
| Vector | AV:N/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Microsoft Office (affected versions not specified)
Description
The issue is related to the improper handling of data in Microsoft Office, which can be exploited by a remote attacker to execute arbitrary code. The exploitation can occur when a user opens a specially crafted file in EPS format or inserts a malformed graphic image into an Office file. Such files can also be attached to emails. If the exploitation is successful, the attacker can gain control over the system.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Office