← Back to browse · API

CVE-2017-11826

Severity
HIGH
CVSS
7.8
EPSS
0.81454
Risk score
84.71
CISA KEV
Yes
PoC
No
Published
2022-03-03
Modified
2022-03-03
First seen
2026-08-07
Aliases
EUVD-2017-3426, GHSA-4QCG-GX82-4H36
Products
Microsoft:Microsoft Office Microsoft Office 2010, SharePoint Enterprise Server 2010, SharePoint Server 2010, Web Applications, Office Web Apps Server 2010 and 2013, Word Viewer, Word 2007, 2010, 2013 and 2016, Word Automation Services, Office Online Server., Microsoft:Office
Sources
euvd EUVD-2017-3426
cisa.gov CVE-2017-11826

Description

A remote code execution vulnerability exists in Microsoft Office software when the software fails to properly handle objects in memory. An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the current user.

References