CVE-2017-0108
The Windows Graphics Component in Microsoft Office 2007 SP3; 2010 SP2; and Word Viewer; Skype for Business 2016; Lync 20
The Windows Graphics Component in Microsoft Office 2007 SP3.
2010 SP2.
and Word Viewer.
Skype for Business 2016.
Lync 2013 SP1.
Lync 2010.
Live Meeting 2007.
Silverlight 5.
Windows Vista SP2.
Windows Server 2008 SP2 and R2 SP1.
and Windows 7 SP1 allows remote attackers to execute arbitrary code via a crafted web site, aka "Graphics Component Remote Code Execution Vulnerability." This vulnerability is different from that described in CVE-2017-0014.
HIGH · CVSS 7.8
EPSS 0.36707
Act now
- EPSS ≥ 0.10 - elevated exploitation probability
- EPSS percentile: top 3% of all CVEs by exploitation likelihood
- Public exploit or PoC is available
- CVSS base score ≥ 7.0
Sigma rules8
YARA rules0