cbcvebase.
CVE-2015-1649
published 2015-04-14

CVE-2015-1649: Use-after-free vulnerability in Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word Viewer, Office Compatibility Pack SP3, Word Automation Services…

critical9.3CVSS 3.1
AVNACMAuNCCICAC
Use-after-free vulnerability in Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word Viewer, Office Compatibility Pack SP3, Word Automation Services on SharePoint Server 2010 SP2, and Office Web Apps Server 2010 SP2 allows remote attackers to execute arbitrary code via a crafted Office document, aka "Microsoft Office Component Use After Free Vulnerability."

Affected

8 ranges
VendorProductVersion rangeFixed in
microsoftoffice
microsoftoffice_web_apps
microsoftoffice_web_apps
microsoftsharepoint_server
microsoftsharepoint_server
microsoftword
microsoftword
microsoftword