Vulnerability Details CVE-2016-0141
The Visual Basic macros in Microsoft Office 2007 SP3, 2010 SP2, 2013 SP1, and 2016 export a certificate-store private key during a document-save operation, which allows attackers to obtain sensitive information via unspecified vectors, aka "Microsoft Information Disclosure Vulnerability."
Exploit prediction scoring system (EPSS) score
EPSS Score 0.077
EPSS Ranking 91.5%
CVSS Severity
CVSS v3 Score 6.5
CVSS v2 Score 4.3
Products affected by CVE-2016-0141
-
cpe:2.3:a:microsoft:office:2007
-
cpe:2.3:a:microsoft:office:2010
-
cpe:2.3:a:microsoft:office:2013
-
cpe:2.3:a:microsoft:office:2016