Vulnerability Details CVE-2016-7266
Microsoft Excel 2007 SP3, Excel 2010 SP2, Excel 2013 SP1, Excel 2013 RT SP1, Excel 2016, Office Compatibility Pack SP3, Excel Viewer, and Excel 2016 for Mac mishandle a registry check, which allows user-assisted remote attackers to execute arbitrary commands via crafted embedded content in a document, aka "Microsoft Office Security Feature Bypass Vulnerability."
Exploit prediction scoring system (EPSS) score
EPSS Score 0.164
EPSS Ranking 94.5%
CVSS Severity
CVSS v3 Score 7.8
CVSS v2 Score 6.8
Products affected by CVE-2016-7266
-
cpe:2.3:a:microsoft:excel:2007
-
cpe:2.3:a:microsoft:excel:2010
-
cpe:2.3:a:microsoft:excel:2013
-
cpe:2.3:a:microsoft:excel:2016
-
cpe:2.3:a:microsoft:excel_for_mac:2016
-
cpe:2.3:a:microsoft:excel_viewer:-
-
cpe:2.3:a:microsoft:excel_viewer:2003
-
cpe:2.3:a:microsoft:excel_viewer:2007
-
cpe:2.3:a:microsoft:office_compatibility_pack:-