cbcvebase.
CVE-2017-11825
published 2017-10-13

CVE-2017-11825: Microsoft Office 2016 Click-to-Run (C2R) and Microsoft Office 2016 for Mac allow an attacker to use a specially crafted file to perform actions in the security…

high7.8CVSS 3.0
AVLACLPRNUIRSUCHIHAH
Microsoft Office 2016 Click-to-Run (C2R) and Microsoft Office 2016 for Mac allow an attacker to use a specially crafted file to perform actions in the security context of the current user, due to how Microsoft Office handles files in memory, aka "Microsoft Office Remote Code Execution Vulnerability".

Affected

5 ranges
VendorProductVersion rangeFixed in
microsoftoffice
microsoftoffice_for_mac
msrcmicrosoft_office_2016_click-to-run_for_32-bit_editions
msrcmicrosoft_office_2016_click-to-run_for_64-bit_editions
msrcmicrosoft_office_2016_for_mac