Vulnerability Details CVE-2017-11825
Microsoft Office 2016 Click-to-Run (C2R) and Microsoft Office 2016 for Mac allow an attacker to use a specially crafted file to perform actions in the security context of the current user, due to how Microsoft Office handles files in memory, aka "Microsoft Office Remote Code Execution Vulnerability".
Exploit prediction scoring system (EPSS) score
EPSS Score 0.34
EPSS Ranking 96.7%
CVSS Severity
CVSS v3 Score 7.8
CVSS v2 Score 9.3
Products affected by CVE-2017-11825
-
cpe:2.3:a:microsoft:office:2016
-
cpe:2.3:a:microsoft:office_for_mac:2016