CVE-2017-11826
Act now ● On CISA KEV — actively exploited
Actively exploited — on the CISA KEV list.
CVSS base
—
EPSS — probability of exploitation (30 days)
81.2%
99.6th percentile
CISA KEV
Listed
Added 2022-03-03 · patch by 2022-03-24
Weakness / dates
—
Published — · modified —
Description
A remote code execution vulnerability exists in Microsoft Office software when the software fails to properly handle objects in memory. An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the current user.