Lucene search

K
kasperskyKaspersky LabKLA10583
HistoryMay 12, 2015 - 12:00 a.m.

KLA10583 Code execution vulnerability in Microsoft Office

2015-05-1200:00:00
Kaspersky Lab
threats.kaspersky.com
25

9.3 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

7.4 High

AI Score

Confidence

Low

0.894 High

EPSS

Percentile

98.8%

An unspecified vulnerability was found in Microsoft products. By exploiting this vulnerability malicious users can execute arbitrary code. This vulnerability can be exploited remotely via a specially designed document.

Original advisories

Microsoft bulletin

CVE-2015-1683

CVE-2015-1682

Related products

Microsoft-Office

Microsoft-Sharepoint-Server

CVE list

CVE-2015-1683 critical

CVE-2015-1682 critical

KB list

3017815

2956194

2999420

2965307

2965240

2975816

3039748

2956140

3057181

3039725

2965233

2956195

2965237

2999412

2956193

2965311

3023055

2975808

2965282

2965242

2986216

3062536

3039736

Solution

Install necessary updates from the KB section, that are listed in your Windows Update (Windows Update usually can be accessed from the Control Panel)

Impacts

  • ACE

Arbitrary code execution. Exploitation of vulnerabilities with this impact can lead to executing by abuser any code or commands at vulnerable machine or process.

Affected Products

  • Office 2007 Service Pack 3Office 2010 x86, x64 Service Pack 2Office 2013 x86, x64, RT Service Pack 1Office for Mac 2011PoerPoint ViewerSharePoint Server 2010 Service Pack 2SharePoint Server 2013 Service Pack 1Office Web Apps 2010 Service Pack 2Office Web Apps 2013 Service Pack 1

References

9.3 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

7.4 High

AI Score

Confidence

Low

0.894 High

EPSS

Percentile

98.8%