Microsoft Word Remote Code Execution Vulnerability
94Vexday Risk Score
Prioritize patching. It exploitation observed by VulnCheck and has a public proof of concept.
ssvc Actcvss 9.8epss 82%
from disclosure to weapon21 days
Published on NVDFeb 14
1st PoC+21d
VulnCheck+401d
exploitation probability
82%top 1% of all CVEs
observed exploitation
yesVulnCheck
21 public exploit(s)
In short
A critical vulnerability in Microsoft Word allows an attacker to execute arbitrary code on a victim's computer by tricking them into opening a specially crafted document. This can lead to complete system compromise without requiring any special user permissions.
Technical detail
An integer overflow vulnerability (CWE-190) in Microsoft Word's document parsing engine allows remote code execution when processing maliciously crafted Word files. The attack vector is document opening via email or web download; no user interaction beyond opening the file is required, enabling unauthenticated RCE with CVSS 9.8 severity.
Summary generated and translated by AI from the official description.
Microsoft Word Remote Code Execution Vulnerability
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
Affected products
Microsoft · Microsoft 365 Apps for EnterpriseMicrosoft · Microsoft Office 2019Microsoft · Microsoft Office 2019 for MacMicrosoft · Microsoft Office LTSC 2021Microsoft · Microsoft Office LTSC for Mac 2021Microsoft · Microsoft Office Online ServerMicrosoft · Microsoft Office Web Apps Server 2013 Service Pack 1Microsoft · Microsoft SharePoint Enterprise Server 2013 Service Pack 1Microsoft · Microsoft SharePoint Enterprise Server 2016Microsoft · Microsoft SharePoint Foundation 2013 Service Pack 1Microsoft · Microsoft SharePoint Server 2019Microsoft · Microsoft SharePoint Server Subscription EditionMicrosoft · Microsoft Word 2013 Service Pack 1Microsoft · Microsoft Word 2016Microsoft · SharePoint Server Subscription Edition Language Packpublic PoCs found — 21
githubgithub.com/gyaansastra/CVE-2023-21716★ 59githubgithub.com/Xnuvers007/CVE-2023-21716★ 46githubgithub.com/JMousqueton/CVE-2023-21716★ 8githubgithub.com/hv0l/CVE-2023-21716_exploit★ 6githubgithub.com/RonF98/CVE-2023-21716-POC★ 4githubgithub.com/FeatherStark/CVE-2023-21716★ 4githubgithub.com/MojithaR/CVE-2023-21716-EXPLOIT.py★ 3githubgithub.com/Lord-of-the-IoT/CVE-2023-21716★ 2githubgithub.com/Caliburn9/CVE-2023-21716-Analysis-ICT287★ 0githubgithub.com/mikesxrs/CVE-2023-21716_YARA_Results★ 0githubgithub.com/muumthf/CVE-2023-21716★ 0githubgithub.com/REGGYRAIDER/CVE-2023-21716★ 0githubgithub.com/P4x1s/CVE-2023-21716-POC★ 0vulncheckvulncheck.com/xdb/cafd7b8d1161unverifiedvulncheckvulncheck.com/xdb/590c4d4415d4unverifiedvulncheckvulncheck.com/xdb/7dd71096a2dfunverifiedvulncheckvulncheck.com/xdb/a26bd52d812bunverifiedvulncheckvulncheck.com/xdb/010f8a0a6112unverifiedvulncheckvulncheck.com/xdb/f4ca07214480unverifiedvulncheckvulncheck.com/xdb/8299dbff260cunverifiedvulncheckvulncheck.com/xdb/8a695619ae8bunverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.