97413vdb entry
http://www.securityfocus.com/bid/97413 CVE-2017-0106
HIGH
Record summary
CVE-2017-0106 has a selected CVSS score of 7.8 (high); EIP currently links 1 repository PoC.
Description
Microsoft Excel 2007 SP3, Microsoft Outlook 2010 SP2, Microsoft Outlook 2013 SP1, and Microsoft Outlook 2016 allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted document, aka "Microsoft Office Memory Corruption Vulnerability."
Description source: CVE List
Exploitation context
Available material
- Repository PoCs
- 1
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
| CVE List | Excel 2007 SP3, Microsoft Outlook 2010 SP2, Microsoft Outlook 2013 SP1, and Microsoft Outlook 2016 | affected |
Proofs of concept
1Repository PoCs
GitHubryhanson/CVE-2017-0106Repository PoCby ryhansonStars: 0Not analyzed1 file
References
41038227vdb entry
http://www.securitytracker.com/id/1038227 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2017-0106 portal.msrc.microsoft.comConfirmation
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-0106