CVE-2017-11882

HIGH KEV RANSOMWARE

Microsoft Office CVE-2017-11882

Title source: metasploit

Description

Microsoft Office 2007 Service Pack 3, Microsoft Office 2010 Service Pack 2, Microsoft Office 2013 Service Pack 1, and Microsoft Office 2016 allow an attacker to run arbitrary code in the context of the current user by failing to properly handle objects in memory, aka "Microsoft Office Memory Corruption Vulnerability". This CVE ID is unique from CVE-2017-11884.

Exploits (55)

exploitdb WORKING POC
by embedi · textremotewindows
https://www.exploit-db.com/exploits/43163
nomisec WORKING POC 538 stars
by Ridter · client-side
https://github.com/Ridter/CVE-2017-11882
nomisec WORKING POC 496 stars
by embedi · client-side
https://github.com/embedi/CVE-2017-11882
nomisec WORKING POC 331 stars
by rip1s · local
https://github.com/rip1s/CVE-2017-11882
nomisec WORKING POC 272 stars
by rxwx · client-side
https://github.com/rxwx/CVE-2018-0802
nomisec WORKING POC 167 stars
by Ridter · client-side
https://github.com/Ridter/RTF_11882_0802
nomisec WORKING POC 97 stars
by 0x09AL · client-side
https://github.com/0x09AL/CVE-2017-11882-metasploit
nomisec WORKING POC 44 stars
by starnightcyber · client-side
https://github.com/starnightcyber/CVE-2017-11882
nomisec WORKING POC 35 stars
by BlackMathIT · client-side
https://github.com/BlackMathIT/2017-11882_Generator
nomisec WORKING POC 11 stars
by likekabin · client-side
https://github.com/likekabin/CVE-2018-0802_CVE-2017-11882
nomisec WORKING POC 6 stars
by Retr0-code · client-side
https://github.com/Retr0-code/SignHere
nomisec WORKING POC 5 stars
by littlebin404 · client-side
https://github.com/littlebin404/CVE-2017-11882
nomisec STUB 3 stars
by zhouat · poc
https://github.com/zhouat/cve-2017-11882
nomisec WORKING POC 2 stars
by ekgg · poc
https://github.com/ekgg/Overflow-Demo-CVE-2017-11882
nomisec STUB 2 stars
by ChaitanyaHaritash · poc
https://github.com/ChaitanyaHaritash/CVE-2017-11882
nomisec WORKING POC 2 stars
by Shadowshusky · client-side
https://github.com/Shadowshusky/CVE-2017-11882-
nomisec WRITEUP 1 stars
by Abdibimantara · poc
https://github.com/Abdibimantara/Maldoc-Analysis
nomisec WORKING POC 1 stars
by Sunqiz · client-side
https://github.com/Sunqiz/CVE-2017-11882-reproduction
nomisec WORKING POC 1 stars
by tzwlhack · remote
https://github.com/tzwlhack/CVE-2017-11882
gitlab WORKING POC
by Gaojianli · poc
https://gitlab.com/Gaojianli/CVE-2017-11882
nomisec WORKING POC
by imkidz0 · client-side
https://github.com/imkidz0/CVE-2017-11882
nomisec SCANNER
by xdrake1010 · poc
https://github.com/xdrake1010/CVE-2017-11882-Preventer
nomisec NO CODE
by pixelofapicture · poc
https://github.com/pixelofapicture/001-Malware-Analysis-CVE-2017-11882
nomisec NO CODE
by yaseenibnakhtar · poc
https://github.com/yaseenibnakhtar/001-Malware-Analysis-CVE-2017-11882
nomisec NO CODE
by jadeapar · poc
https://github.com/jadeapar/Dragonfish-s-Malware-Cyber-Analysis
nomisec WORKING POC
by lisinan988 · client-side
https://github.com/lisinan988/CVE-2017-11882-exp
nomisec NO CODE
by ActorExpose · poc
https://github.com/ActorExpose/CVE-2017-11882
nomisec NO CODE
by HaoJame · poc
https://github.com/HaoJame/CVE-2017-11882
nomisec WORKING POC
by chanbin · client-side
https://github.com/chanbin/CVE-2017-11882
nomisec WORKING POC
by j0lama · remote
https://github.com/j0lama/CVE-2017-11882
nomisec NO CODE
by herbiezimmerman · poc
https://github.com/herbiezimmerman/CVE-2017-11882-Possible-Remcos-Malspam
nomisec WORKING POC
by likekabin · poc
https://github.com/likekabin/CVE-2017-11882
nomisec STUB
by CSC-pentest · poc
https://github.com/CSC-pentest/cve-2017-11882
nomisec WORKING POC
by Grey-Li · remote
https://github.com/Grey-Li/CVE-2017-11882
nomisec WRITEUP
by HZachev · poc
https://github.com/HZachev/ABC
metasploit WORKING POC MANUAL
by mumbai, embedi · rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/fileformat/office_ms17_11882.rb
patchapalooza WORKING POC
by j4_son · poc
https://gitee.com/j4_son/CVE-2017-11882
patchapalooza WORKING POC
by mirrors_embedi · poc
https://gitee.com/mirrors_embedi/CVE-2017-11882
patchapalooza WORKING POC
by mirrors_unamer · poc
https://gitee.com/mirrors_unamer/CVE-2017-11882
patchapalooza WORKING POC
by csharphpython · poc
https://gitee.com/csharphpython/CVE-2017-11882
patchapalooza WORKING POC
by adai2022 · poc
https://gitee.com/adai2022/CVE-2017-11882
patchapalooza WORKING POC
by zhangbo123321 · poc
https://gitee.com/zhangbo123321/CVE-2017-11882-metasploit
patchapalooza WORKING POC
by aston_mation · poc
https://gitee.com/aston_mation/CVE-2017-11882
patchapalooza WORKING POC
by putiji · poc
https://gitee.com/putiji/CVE-2017-11882-17k
patchapalooza WORKING POC
by putiji · poc
https://gitee.com/putiji/CVE-2017-11882
patchapalooza WORKING POC
by wu_ze_jun · poc
https://gitee.com/wu_ze_jun/CVE-2017-11882
patchapalooza WORKING POC
by xiaolouuu · poc
https://gitee.com/xiaolouuu/CVE-2017-11882
patchapalooza WORKING POC
by alessio_ · local
https://gitlab.com/alessio_/CVE-2017-11882
patchapalooza WORKING POC
by chenM1020 · poc
https://gitee.com/chenM1020/CVE-2017-11882
patchapalooza WORKING POC
by chenM1020 · poc
https://gitee.com/chenM1020/CVE-2017-11882-metasploit

References (15)

Scores

CVSS v3 7.8
EPSS 0.9435
EPSS Percentile 100.0%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Details

CISA KEV 2021-11-03
VulnCheck KEV 2017-11-27
InTheWild.io 2021-07-23
ENISA EUVD EUVD-2017-3478
Ransomware Use Confirmed
CWE
CWE-119
Status published
Products (5)
microsoft/office 2007 sp3
microsoft/office 2010 sp2
microsoft/office 2013 sp1
microsoft/office 2016
Microsoft Corporation/Microsoft Office Microsoft Office 2007 Service Pack 3, Microsoft Office 2010 Service Pack 2, Microsoft Office 2013 Se
Published Nov 15, 2017
KEV Added Nov 03, 2021
Tracked Since Feb 18, 2026