Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.806158
Category:Windows : Microsoft Bulletins
Title:Microsoft Office Suite Remote Code Execution Vulnerabilities (3104540)
Summary:This host is missing a critical security; update according to Microsoft Bulletin MS15-116.
Description:Summary:
This host is missing a critical security
update according to Microsoft Bulletin MS15-116.

Vulnerability Insight:
Multiple flaws exist when,

- The Office software improperly handles objects in memory while parsing
specially crafted Office files.

- The Office software fails to properly handle rich text format files in
memory.

Vulnerability Impact:
Successful exploitation will allow remote
attackers to run arbitrary code in the context of the current user and
to perform actions in the security context of the current user.

Affected Software/OS:
- Microsoft Office 2007 Service Pack 3 and prior

- Microsoft Office 2010 Service Pack 2 and prior

- Microsoft Office 2013 Service Pack 1 and prior

Solution:
The vendor has released updates. Please see the references for more information.

CVSS Score:
9.3

CVSS Vector:
AV:N/AC:M/Au:N/C:C/I:C/A:C

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2015-6093
BugTraq ID: 77491
http://www.securityfocus.com/bid/77491
http://www.zerodayinitiative.com/advisories/ZDI-15-539
Microsoft Security Bulletin: MS15-116
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2015/ms15-116
http://www.securitytracker.com/id/1034118
http://www.securitytracker.com/id/1034122
Common Vulnerability Exposure (CVE) ID: CVE-2015-6092
Common Vulnerability Exposure (CVE) ID: CVE-2015-6091
CopyrightCopyright (C) 2015 Greenbone AG

This is only one of 146377 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.