Vulnerability Details CVE-2014-0260
Microsoft Word 2003 SP3, 2007 SP3, 2010 SP1 and SP2, 2013, and 2013 RT; Office Compatibility Pack SP3; Word Viewer; SharePoint Server 2010 SP1 and SP2 and 2013; Office Web Apps 2010 SP1 and SP2; and Office Web Apps Server 2013 allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted Office document, aka "Word Memory Corruption Vulnerability."
Exploit prediction scoring system (EPSS) score
EPSS Score 0.286
EPSS Ranking 96.3%
CVSS Severity
CVSS v2 Score 9.3
Products affected by CVE-2014-0260
-
cpe:2.3:a:microsoft:office_compatibility_pack:-
-
cpe:2.3:a:microsoft:office_web_apps:2010
-
cpe:2.3:a:microsoft:office_web_apps_server:2013
-
cpe:2.3:a:microsoft:sharepoint_server:2010
-
cpe:2.3:a:microsoft:sharepoint_server:2013
-
cpe:2.3:a:microsoft:word:2003
-
cpe:2.3:a:microsoft:word:2007
-
cpe:2.3:a:microsoft:word:2010
-
cpe:2.3:a:microsoft:word:2013
-
cpe:2.3:a:microsoft:word_viewer:-
-
cpe:2.3:a:microsoft:word_viewer:2003