Vulnerability · NVD
CVE-2016-7268
CVE-2016-7268, high severity (CVSS 7.1): 3 tracked apps concerned, all fixed or indeterminable on their current version.
- Severity (CVSS)
- 7.1
- Exploitation
- 22.6 %
- Tracked apps
- 3
- Still exposed
- 0
NVD scale
EPSS, predicted over 30 days
Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Office Compatibility Pack SP3, Word Viewer, Word for Mac 2011, Word Automation Services on SharePoint Server 2010 SP2, and Office Web Apps 2010 SP2 allow remote attackers to obtain sensitive information from process memory or cause a denial of service (out-of-bounds read) via a crafted document, aka "Microsoft Office Information Disclosure Vulnerability."
Show raw CVSS vector
Tracked apps referencing this CVE
For each app: the affected range, the fixing version, and where the tracked app stands today.
-
-
-
Affected - Fixed in - Latest tracked - undetermined
NVD references 7 distinct products for this CVE : only those tracked by Scout (mobile and desktop catalog apps) are listed above. Libraries, servers and out-of-scope products do not appear here. Full list on NVD ↗
Vulnerable CPE configurations (4)
| Vendor | Product | Platform | Versions | CPE 2.3 URI |
|---|---|---|---|---|
| microsoft |
office All platforms (wildcard)
|
All platforms (wildcard) | - | cpe:2.3:a:microsoft:office:2010:sp2:*:*:*:*:*:* |
| microsoft |
office All platforms (wildcard)
|
All platforms (wildcard) | - | cpe:2.3:a:microsoft:office:2010:sp2:*:*:*:*:*:* |
| microsoft |
word All platforms (wildcard)
|
All platforms (wildcard) | - | cpe:2.3:a:microsoft:word:2007:sp3:*:*:*:*:*:* |
| microsoft |
word All platforms (wildcard)
|
All platforms (wildcard) | - | cpe:2.3:a:microsoft:word:2007:sp3:*:*:*:*:*:* |