CVE-2016-0183
high · 8.8The Windows font library in Microsoft Office 2010 SP2, Word 2010 SP2, Word Automation Services on SharePoint Server 2010 SP2, and Office Web Apps 2010 SP2 allows remote attackers to execute arbitrary code via a crafted embedded font, aka "Microsoft Office Graphics RCE Vulnerability."
8.8
CVSS
15.7%
EPSS (exploit prob.)
97th
EPSS percentile
2016-05-11
Published
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Weaknesses
CWE-284
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| microsoft | office | 2010 |
| microsoft | office_web_apps | 2010 |
| microsoft | sharepoint_server | 2010 |
| microsoft | word | 2010 |
Check a specific version with /api/v1/cve/match.
References
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2016-0183