cbcvebase.
CVE-2017-0194
published 2017-04-12

CVE-2017-0194: Microsoft Excel 2007 SP3, Microsoft Excel 2010 SP2, and Office Compatibility Pack SP2 allow remote attackers to obtain sensitive information from process…

medium5.5CVSS 3.0
AVLACLPRNUIRSUCHINAN
Microsoft Excel 2007 SP3, Microsoft Excel 2010 SP2, and Office Compatibility Pack SP2 allow remote attackers to obtain sensitive information from process memory via a crafted Office document, aka "Microsoft Office Information Disclosure Vulnerability."

Affected

6 ranges
VendorProductVersion rangeFixed in
microsoftexcel
microsoftexcel
microsoft_corporationoffice
msrcmicrosoft_excel_2007_service_pack_3
msrcmicrosoft_excel_2010_service_pack_2
msrcmicrosoft_office_compatibility_pack_service_pack_2