HTTP: Microsoft Office CVE-2016-3317 Code Execution

This signature detects attempts to exploit a known vulnerability against Microsoft Office. A successful exploitation of this issue could lead to leakage of sensitive information.

Extended Description

Microsoft Office 2010 SP2, Word 2007 SP3, Word 2010 SP2, Word for Mac 2011, Word 2016 for Mac, and Word Viewer allow remote attackers to execute arbitrary code via a crafted file, aka "Microsoft Office Memory Corruption Vulnerability."

Affected Products

Microsoft word_viewer

References

CVE: CVE-2016-3317

Short Name
HTTP:STC:DL:CVE-2016-3317-CE
Severity
Major
Recommended
True
Recommended Action
Drop
Category
HTTP
Keywords
CVE-2016-3317 Code Execution Microsoft Office
Release Date
08/09/2016
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3590
False Positive
Unknown
Vendors

Microsoft

CVSS Score

9.3

Found a potential security threat?