CVE-2017-0194 Information
Feb 14, 2021
cve
Description
Microsoft Excel 2007 SP3 Microsoft Excel 2010 SP2 and Office Compatibility Pack SP2 allow remote attackers to obtain sensitive information from process memory via a crafted Office document aka \Microsoft Office Information Disclosure Vulnerability.\
CVSS Vector
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Reference
http://www.securityfocus.com/bid/97436 http://www.securitytracker.com/id/1038244 https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-0194
Attack Complexity
LOW
Privileges Required
NONE
User Interaction Required
NONE
Scope
REQUIRED
Confidentiality Impact
UNCHANGED
Integrity Impact
HIGH
Availability Impact
NONE
Base Score
NONE
Base Severity
5.5
Share on: