HTTP: Microsoft Office Word CVE-2015-2477 Remote Code Execution

This signature detects attempts to exploit a known vulnerability against Microsoft Office Word. A successful exploit can lead to buffer overflow and remote code execution.

Extended Description

Microsoft Office 2007 SP3, Office for Mac 2011, Office for Mac 2016, and Word Viewer allow remote attackers to execute arbitrary code via a crafted document, aka "Microsoft Office Memory Corruption Vulnerability."

Affected Products

Microsoft word_viewer

References

CVE: CVE-2015-2477

Short Name
HTTP:STC:DL:CVE-2015-2477-CE
Severity
Major
Recommended
False
Recommended Action
Drop
Category
HTTP
Keywords
CVE-2015-2477 Code Execution Microsoft Office Remote Word
Release Date
08/11/2015
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3761
False Positive
Unknown
Vendors

Microsoft

CVSS Score

9.3

Found a potential security threat?