Skip to content
Appaloosa Scout
Language selector
fr en

Vulnerability · NVD

CVE-2015-2424

CVE-2015-2424, high severity (CVSS 8.8): 4 tracked apps concerned, all fixed or indeterminable on their current version.

Severity (CVSS)
8.8

NVD scale

Exploitation
-
Tracked apps
4
Still exposed
0

Microsoft PowerPoint 2007 SP3, Word 2007 SP3, PowerPoint 2010 SP2, Word 2010 SP2, PowerPoint 2013 SP1, Word 2013 SP1, and PowerPoint 2013 RT SP1 allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted Office document, aka "Microsoft Office Memory Corruption Vulnerability."

Attack vector : Network No privileges required
Show raw CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Tracked apps referencing this CVE

For each app: the affected range, the fixing version, and where the tracked app stands today.

Vulnerable CPE configurations (15)
Vendor Product Versions
microsoft office
All platforms (wildcard)
-
microsoft office
All platforms (wildcard)
-
microsoft office
All platforms (wildcard)
-
microsoft office
All platforms (wildcard)
-
microsoft office
macOS
-
microsoft office
All platforms (wildcard)
-
microsoft office
All platforms (wildcard)
-
microsoft office
All platforms (wildcard)
-
microsoft office
All platforms (wildcard)
-
microsoft powerpoint
All platforms (wildcard)
-
microsoft powerpoint
All platforms (wildcard)
-
microsoft powerpoint
All platforms (wildcard)
-
microsoft powerpoint
All platforms (wildcard)
-
microsoft word
All platforms (wildcard)
-
microsoft word
All platforms (wildcard)
-
View on NVD ↗ Advisory · docs.microsoft.com