Логотип exploitDog
bind:CVE-2023-36884
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-36884

Количество 5

Количество 5

nvd логотип

CVE-2023-36884

около 2 лет назад

Windows Search Remote Code Execution Vulnerability

CVSS3: 7.5
EPSS: Критический
msrc логотип

CVE-2023-36884

около 2 лет назад

Windows Search Remote Code Execution Vulnerability

CVSS3: 7.5
EPSS: Критический
github логотип

GHSA-gwrc-vqcf-v9v4

около 2 лет назад

Microsoft is investigating reports of a series of remote code execution vulnerabilities impacting Windows and Office products. Microsoft is aware of targeted attacks that attempt to exploit these vulnerabilities by using specially-crafted Microsoft Office documents. An attacker could create a specially crafted Microsoft Office document that enables them to perform remote code execution in the context of the victim. However, an attacker would have to convince the victim to open the malicious file. Upon completion of this investigation, Microsoft will take the appropriate action to help protect our customers. This might include providing a security update through our monthly release process or providing an out-of-cycle security update, depending on customer needs. Please see the Microsoft Threat Intelligence Blog https://aka.ms/Storm-0978  Entry for important information about steps you can take to protect your system from this vulnerability. This CVE will be updated with new in...

EPSS: Критический
fstec логотип

BDU:2023-03660

около 2 лет назад

Уязвимость операционных систем Windows и пакетов программ Microsoft Office, связанная с ошибками при обработке входных данных, позволяющая нарушителю выполнить произвольный код

CVSS3: 8.3
EPSS: Критический
msrc логотип

ADV230003

почти 2 года назад

Microsoft Office Defense in Depth Update

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-36884

Windows Search Remote Code Execution Vulnerability

CVSS3: 7.5
93%
Критический
около 2 лет назад
msrc логотип
CVE-2023-36884

Windows Search Remote Code Execution Vulnerability

CVSS3: 7.5
93%
Критический
около 2 лет назад
github логотип
GHSA-gwrc-vqcf-v9v4

Microsoft is investigating reports of a series of remote code execution vulnerabilities impacting Windows and Office products. Microsoft is aware of targeted attacks that attempt to exploit these vulnerabilities by using specially-crafted Microsoft Office documents. An attacker could create a specially crafted Microsoft Office document that enables them to perform remote code execution in the context of the victim. However, an attacker would have to convince the victim to open the malicious file. Upon completion of this investigation, Microsoft will take the appropriate action to help protect our customers. This might include providing a security update through our monthly release process or providing an out-of-cycle security update, depending on customer needs. Please see the Microsoft Threat Intelligence Blog https://aka.ms/Storm-0978  Entry for important information about steps you can take to protect your system from this vulnerability. This CVE will be updated with new in...

93%
Критический
около 2 лет назад
fstec логотип
BDU:2023-03660

Уязвимость операционных систем Windows и пакетов программ Microsoft Office, связанная с ошибками при обработке входных данных, позволяющая нарушителю выполнить произвольный код

CVSS3: 8.3
93%
Критический
около 2 лет назад
msrc логотип
ADV230003

Microsoft Office Defense in Depth Update

почти 2 года назад

Уязвимостей на страницу