imPC@ndo IT

Tracker / CVE-2015-0064

CVE-2015-0064

High 9.3

Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word Automation Services in SharePoint Server 2010, Web Applications 2010 SP2, Word Viewer, and Office Compatibility Pack SP3 allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted Office document, aka "Office Remote Code Execution Vulnerability."

Affected products and versions

microsoft office
microsoft office_compatibility_pack
microsoft sharepoint_server
microsoft web_applications
microsoft word
microsoft word_automation_services
microsoft word_viewer

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References