← Back

CVE-2017-0027

nvd nist
Published: Mar 17, 2017Modified: May 13, 2026

JSON object

Loading...
4.7
Vector
CVSS:3.0/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:N/A:N
Exploitability: 1.0 / Impact: 3.6
Source: NVD

Description

Microsoft Excel 2007 SP3, Excel 2010 SP2, Excel 2013 RT SP1, Excel 2016, Office Compatibility Pack SP3, and Excel Services on SharePoint Server 2013 SP1 allow remote attackers to obtain sensitive information from process memory via a crafted Office document, aka "Microsoft Office Information Disclosure Vulnerability."

Affected (6)

3 products
Excel
Office Compatibility Pack
Sharepoint Server
Configuration A
6 vulnerable
Vulnerable SoftwareAffected Versions
Microsoft
Version 2007 sp3
Version 2010 sp2
Version 2013 sp1
Version 2016
All versions
Version 2013 sp1

References (6)

Source: secure@microsoft.com
Third Party AdvisoryVDB Entry
Source: secure@microsoft.com
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory

Timeline

No history available yet.