CVE-2017-11939
3Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackepss 5.7%
exploitation probability
5.7%top 7% of all CVEs
observed exploitation
nono source reports it
Microsoft Office 2016 Click-to-Run (C2R) allows an information disclosure vulnerability due to the way Microsoft Office enforces DRM copy/paste permissions, aka "Microsoft Office Information Disclosure Vulnerability".
Affected products
Microsoft Corporation · Microsoft Office