Microsoft OneNote 2007 SP3 allows remote attackers to execute arbitrary code via a crafted OneNote file that triggers creation of an executable file in a startup folder, aka "OneNote Remote Code Execution Vulnerability."
Exploit prediction scoring system (EPSS) score
EPSS Score 0.133
EPSS Ranking 93.7%