Beschreibung
Multiple serious vulnerabilities have been found in Microsoft Office. Malicious users can exploit these vulnerabilities to execute arbitrary code, obtain sensitive information and gain privileges.
Below is a complete list of vulnerabilities:
- An information disclosure vulnerability in Microsoft Office can be exploited remotely via a specially crafted file to obtain sensitive information;
- An improper memory handling vulnerability in Microsoft Office can be exploited remotely via a specially crafted file to execude arbitrary code;
- An improper request handling vulnerability in Microsoft Sharepoint Server can be exploited remotely via a specially crafted request to gain privileges;
- An information disclosure vulnerability in Microsoft Outlook can be exploited remotely to obtain sensetive information
Ursprüngliche Informationshinweise
CVE Liste
- CVE-2017-11934 critical
- CVE-2017-11935 critical
- CVE-2017-11936 critical
- CVE-2017-11939 critical
KB Liste
Mehr erfahren
Informieren Sie sich über die Statistiken der in Ihrer Region verbreiteten Sicherheitslücken statistics.securelist.com
Sie haben einen Fehler in der Beschreibung der Schwachstelle gefunden? Mitteilen!