CyberSec.Space Logo
Back to CVE Browser

CVE-2017-11826

Known Exploited (CISA KEV)HIGH
7.8
CVSS Severity Score
EPSS Score55.9480%
EPSS Percentile92.12th
PublishedOct 13, 2017
Last ModifiedApr 22, 2026

Vulnerability Description

Microsoft Office 2010, SharePoint Enterprise Server 2010, SharePoint Server 2010, Web Applications, Office Web Apps Server 2010 and 2013, Word Viewer, Word 2007, 2010, 2013 and 2016, Word Automation Services, and Office Online Server allow remote code execution when the software fails to properly handle objects in memory.

Affected Platforms (CPE)

πŸ“¦
Microsoft

Office Compatibility Pack

All versions
πŸ“¦
Microsoft

Office Online Server

= 2016
πŸ“¦
Microsoft

Office Web Apps Server

= 2010
πŸ“¦
Microsoft

Office Web Apps Server

= 2013
πŸ“¦
Microsoft

Office Word Viewer

All versions
πŸ“¦
Microsoft

Sharepoint Enterprise Server

= 2016
πŸ“¦
Microsoft

Sharepoint Server

= 2010
πŸ“¦
Microsoft

Sharepoint Server

= 2013
πŸ“¦
Microsoft

Word

= 2007
πŸ“¦
Microsoft

Word

= 2010
πŸ“¦
Microsoft

Word

= 2013
πŸ“¦
Microsoft

Word

= 2013
πŸ“¦
Microsoft

Word

= 2016

References & Advisories

Related Vulnerabilities