Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.811024
Category:Windows : Microsoft Bulletins
Title:Microsoft Office Compatibility Pack Remote Code Execution Vulnerability (KB3191835)
Summary:This host is missing an important security; update for Microsoft Office Compatibility Pack according to Microsoft KB3191835.
Description:Summary:
This host is missing an important security
update for Microsoft Office Compatibility Pack according to Microsoft KB3191835.

Vulnerability Insight:
The flaw exists as the software fails to
properly handle objects in memory.

Vulnerability Impact:
Successful exploitation will allow an
attacker to run arbitrary code in the context of the current user. If the
current user is logged on with administrative user rights, an attacker could
take control of the affected system. An attacker could then install programs.
View, change, or delete data, or create new accounts with full user rights.

Affected Software/OS:
Microsoft Office Compatibility Pack Service Pack 3 and prior.

Solution:
The vendor has released updates. Please see the references for more information.

CVSS Score:
9.3

CVSS Vector:
AV:N/AC:M/Au:N/C:C/I:C/A:C

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2017-0254
BugTraq ID: 98101
http://www.securityfocus.com/bid/98101
http://www.securitytracker.com/id/1038443
CopyrightCopyright (C) 2017 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.