Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jwch-v5xr-vmcf

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

A remote code execution vulnerability exists when Microsoft Word for Android fails to properly handle certain files.To exploit the vulnerability, an attacker would have to convince a user to open a specially crafted URL file.The update addresses the vulnerability by correcting how Microsoft Word for Android handles specially crafted URL files., aka 'Word for Android Remote Code Execution Vulnerability'.

A remote code execution vulnerability exists when Microsoft Word for Android fails to properly handle certain files.To exploit the vulnerability, an attacker would have to convince a user to open a specially crafted URL file.The update addresses the vulnerability by correcting how Microsoft Word for Android handles specially crafted URL files., aka 'Word for Android Remote Code Execution Vulnerability'.

EPSS

Процентиль: 97%
0.36771
Средний

Дефекты

CWE-20

Связанные уязвимости

CVSS3: 8.8
nvd
больше 5 лет назад

A remote code execution vulnerability exists when Microsoft Word for Android fails to properly handle certain files.To exploit the vulnerability, an attacker would have to convince a user to open a specially crafted URL file.The update addresses the vulnerability by correcting how Microsoft Word for Android handles specially crafted URL files., aka 'Word for Android Remote Code Execution Vulnerability'.

msrc
больше 5 лет назад

Word for Android Remote Code Execution Vulnerability

CVSS3: 8.8
fstec
больше 5 лет назад

Уязвимость текстового редактора Microsoft Word for Android, связанная с недостаточной проверкой вводимых данных, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 97%
0.36771
Средний

Дефекты

CWE-20