Severity
7.8HIGH
EPSS
26.9%
top 3.64%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedNov 10
Latest updateMay 14

Description

Microsoft PowerPoint 2010 SP2, PowerPoint Viewer, and Office Web Apps 2010 SP2 allow remote attackers to execute arbitrary code via a crafted Office document, aka "Microsoft Office Memory Corruption Vulnerability."

CVSS vector

CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages2 packages

🔴Vulnerability Details

2
GHSA
GHSA-p68w-rw8x-mw3r: Microsoft PowerPoint 2010 SP2, PowerPoint Viewer, and Office Web Apps 2010 SP2 allow remote attackers to execute arbitrary code via a crafted Office d2022-05-14
CVEList
CVE-2016-7230: Microsoft PowerPoint 2010 SP2, PowerPoint Viewer, and Office Web Apps 2010 SP2 allow remote attackers to execute arbitrary code via a crafted Office d2016-11-10

📋Vendor Advisories

2
Microsoft
Microsoft Office Memory Corruption Vulnerability2016-11-08
Red Hat
squid: Header Smuggling issue in HTTP Request processing2016-05-06
CVE-2016-7230 (HIGH CVSS 7.8) | Microsoft PowerPoint 2010 SP2 | cvebase.io