Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.810944
Category:Windows : Microsoft Bulletins
Title:Microsoft Office Word Viewer Remote Code Execution Vulnerability (KB3203427)
Summary:This host is missing a critical security; update according to Microsoft KB3203427.
Description:Summary:
This host is missing a critical security
update according to Microsoft KB3203427.

Vulnerability Insight:
The flaw exists due to the way Windows Uniscribe
handles objects in memory.

Vulnerability Impact:
Successful exploitation will allow a remote
attacker to take control of the affected system. An attacker could then install
programs. View, change, or delete data or create new accounts with full user
rights. Users whose accounts are configured to have fewer user rights on the
system could be less impacted than users who operate with administrative user
rights.

Affected Software/OS:
Microsoft Word Viewer.

Solution:
The vendor has released updates. Please see the references for more information.

CVSS Score:
9.3

CVSS Vector:
AV:N/AC:M/Au:N/C:C/I:C/A:C

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2017-0283
BugTraq ID: 98920
http://www.securityfocus.com/bid/98920
https://www.exploit-db.com/exploits/42234/
https://0patch.blogspot.com/2017/07/0patching-quick-brown-fox-of-cve-2017.html
https://bugs.chromium.org/p/project-zero/issues/detail?id=1198
http://www.securitytracker.com/id/1038675
CopyrightCopyright (C) 2017 Greenbone AG

This is only one of 146377 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.