← Back to CVE List
Vulnerability Intelligence Report

CVE-2015-0097

Microsoft Excel 2007 SP3, PowerPoint 2007 SP3, Word 2007 SP3, Excel 2010 SP2, PowerPoint 2010 SP2, and Word 2010 SP2 allow remote attackers to execute arbitrary code via a crafted Office document, aka "Microsoft Word Local Zone Remote Code Execution Vulnerability."

No Active Exploit Signals
CVSS Base Score
9.3
HIGH
EPSS Probability:40.94%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
Authentication
Weaponization
SSVC Action

Affected Products & Versions

Vendor Product Affected Versions
microsoft excel 2007, 2010
microsoft powerpoint 2007, 2010
microsoft word 2007, 2010

References & Technical Advisories

No reference links found.

Threat Intelligence Signals

EPSS Score
40.942%

Identity & Timeline

StatusPUBLISHED
Assigning AuthorityMicrosoft Corporation · Vendor · USA
Reserved2014-11-18T00:00:00
Published2015-03-11T10:00:00
Patch Date2015-03-10
Last Updated2024-08-06T03:55:28

LINK COPIED TO CLIPBOARD