← All CVEs

CVE-2016-0183

high · 8.8

The Windows font library in Microsoft Office 2010 SP2, Word 2010 SP2, Word Automation Services on SharePoint Server 2010 SP2, and Office Web Apps 2010 SP2 allows remote attackers to execute arbitrary code via a crafted embedded font, aka "Microsoft Office Graphics RCE Vulnerability."

8.8
CVSS
15.7%
EPSS (exploit prob.)
97th
EPSS percentile
2016-05-11
Published

CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Weaknesses

CWE-284

Affected products

VendorProductAffected versions
microsoftoffice2010
microsoftoffice_web_apps2010
microsoftsharepoint_server2010
microsoftword2010

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2016-0183