Entreprise d'experts en Sécurité Informatique : Audits et conseils en cybersécurité
Entreprise française de cybersécurité depuis 2004
☎ 03 60 47 09 81 - info@securiteinfo.com


CVE-2015-0097

Description

Microsoft Excel 2007 SP3, PowerPoint 2007 SP3, Word 2007 SP3, Excel 2010 SP2, PowerPoint 2010 SP2, and Word 2010 SP2 allow remote attackers to execute arbitrary code via a crafted Office document, aka "Microsoft Word Local Zone Remote Code Execution Vulnerability."

POC

Reference

- https://www.exploit-db.com/exploits/37657/

Github

- https://github.com/ARPSyndicate/cvemon

- https://github.com/Al1ex/WindowsElevation

- https://github.com/cnhouzi/APTNotes

- https://github.com/fei9747/WindowsElevation

- https://github.com/houjingyi233/office-exploit-case-study

- https://github.com/qiantu88/office-cve