CVE-2023-28285
HIGHMicrosoft 365 Apps - Remote Code Execution via Use-After-Free
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2023-28285. PoCs published by nu11secur1ty.
AI-analyzed exploit summary The provided code is a VBA macro that executes a command to download and run a payload from an external server. However, the actual exploit details are not included, and the author directs users to external links for the full PoC, which is a common tactic in suspicious repositories.
Description
Microsoft Office Remote Code Execution Vulnerability
Exploits (1)
The provided code is a VBA macro that executes a command to download and run a payload from an external server. However, the actual exploit details are not included, and the author directs users to external links for the full PoC, which is a common tactic in suspicious repositories.
References (3)
Scores
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H