9.3
CVE-2017-8509
- EPSS 18.24%
- Veröffentlicht 15.06.2017 01:29:03
- Zuletzt bearbeitet 13.05.2026 00:24:29
- Erkennungen
A remote code execution vulnerability exists in Microsoft Office when the software fails to properly handle objects in memory, aka "Office Remote Code Execution Vulnerability". This CVE ID is unique from CVE-2017-8510, CVE-2017-8511, CVE-2017-8512, CVE-2017-0260, and CVE-2017-8506.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ Office Compatibility Pack Version - Update sp3
Microsoft ≫ Office Web Apps Version 2010
Microsoft ≫ Office Web Apps Server Version 2013
Microsoft ≫ Sharepoint Server Version 2010 Update sp2
Microsoft ≫ Sharepoint Server Version 2013 Update sp1
Microsoft ≫ Sharepoint Server Version 2016
Microsoft ≫ Word For Mac Version 2016
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 18.24% | 0.969 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 8.8 | 2.8 | 5.9 |
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
|
| NIST | 9.3 | 8.6 | 10 |
AV:N/AC:M/Au:N/C:C/I:C/A:C
|
http://www.securityfocus.com/bid/98812
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-8509