CVE-2017-8743

high

Description

A remote code execution vulnerability exists in Microsoft PowerPoint 2016, Microsoft SharePoint Enterprise Server 2016, and Office Online Server when they fail to properly handle objects in memory, aka "PowerPoint Remote Code Execution Vulnerability". This CVE ID is unique from CVE-2017-8742.

References

https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-8743

http://www.securitytracker.com/id/1039323

http://www.securityfocus.com/bid/100746

Details

Source: Mitre, NVD

Published: 2017-09-13

Updated: 2017-09-21

Risk Information

CVSS v2

Base Score: 9.3

Vector: CVSS2#AV:N/AC:M/Au:N/C:C/I:C/A:C

Severity: High

CVSS v3

Base Score: 7.8

Vector: CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Severity: High