Get a Pentest and security assessment of your IT network.

2021-current

CVE-2015-1649 – Use-after-free vulnerability in Microsoft Word 2007 SP3, Office 2010 SP2,

Use-after-free vulnerability in Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word Viewer, Office Compatibility Pack SP3, Word Automation Services on SharePoint Server 2010 SP2, and Office Web Apps Server 2010 SP2 allows remote attackers to execute arbitrary code via a crafted Office document, aka “Microsoft Office Component Use After Free Vulnerability.”

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-1649

Reference (s):

  • MS:MS15-033
  • URL: https://docs.microsoft.com/en-us/security-updates/securitybulletins/2015/ms15-033
  • SECTRACK:1032104
  • URL: http://www.securitytracker.com/id/1032104
Related posts
2021-current

CVE-2004-1715 - Directory traversal vulnerability in MIMEsweeper for Web before 5.0.4 all

2021-current

CVE-2014-4743 - Multiple cross-site scripting (XSS) vulnerabilities in (1) search_ajax.tp

2021-current

CVE-2014-9838 - magick/cache.c in ImageMagick 6.8.9-9 allows remote attackers to cause a

2021-current

CVE-2020-10447 - The way URIs are handled in admin/header.php in Chadha PHPKB Standard Mul