CISA Known Exploited Vulnerability

CVE-2017-0199 Ransomware

Microsoft · Office and WordPad

Microsoft Office and WordPad Remote Code Execution Vulnerability

Date added
BOD 22-01 due date
CWE
Ransomware Known

CISA description

Microsoft Office and WordPad contain an unspecified vulnerability due to the way the applications parse specially crafted files. Successful exploitation allows for remote code execution.

Required action

Apply updates per vendor instructions.