CVE-2017-8743
high · 7.8A remote code execution vulnerability exists in Microsoft PowerPoint 2016, Microsoft SharePoint Enterprise Server 2016, and Office Online Server when they fail to properly handle objects in memory, aka "PowerPoint Remote Code Execution Vulnerability". This CVE ID is unique from CVE-2017-8742.
7.8
CVSS
22.1%
EPSS (exploit prob.)
98th
EPSS percentile
2017-09-13
Published
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Weaknesses
CWE-119
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| microsoft | office_online_server | all versions |
| microsoft | powerpoint | 2016 |
| microsoft | sharepoint_server | 2016 |
Check a specific version with /api/v1/cve/match.
References
- http://www.securityfocus.com/bid/100746
- http://www.securitytracker.com/id/1039323
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-8743
- http://www.securityfocus.com/bid/100746
- http://www.securitytracker.com/id/1039323
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-8743
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2017-8743