Microsoft Outlook Remote Code Execution Vulnerability
41Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendcvss 8.8epss 5.7%
from disclosure to weapon24 days
Published on NVDJun 13
1st PoC+24d
exploitation probability
5.7%top 8% of all CVEs
observed exploitation
nono source reports it
2 public exploit(s)
Microsoft Outlook Remote Code Execution Vulnerability
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
Affected products
Microsoft · Microsoft 365 Apps for EnterpriseMicrosoft · Microsoft Office 2019Microsoft · Microsoft Office LTSC 2021Microsoft · Microsoft Outlook 2013Microsoft · Microsoft Outlook 2013 Service Pack 1Microsoft · Microsoft Outlook 2016public PoCs found — 2
exploitdbwww.exploit-db.com/exploits/51574unverifiedcve_referencepacketstormsecurity.com/files/173361/Microsoft-365-MSO-2306-Build-16.0.16529.20100-Remote-Code-Execution.htmlunverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.