CVE Vulnerabilities

CVE-2016-0057

Published: Mar 09, 2016 | Modified: Apr 12, 2025
CVSS 3.x
7.8
HIGH
Source:
NVD
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Microsoft Office 2007 SP3, 2010 SP2, 2013 SP1, and 2016 does not properly sign an unspecified binary file, which allows local users to gain privileges via a Trojan horse file with a crafted signature, aka Microsoft Office Security Feature Bypass Vulnerability.

Affected Software

NameVendorStart VersionEnd Version
OfficeMicrosoft2007-sp3 (including)2007-sp3 (including)
OfficeMicrosoft2010-sp2 (including)2010-sp2 (including)
OfficeMicrosoft2013-sp1 (including)2013-sp1 (including)
OfficeMicrosoft2016 (including)2016 (including)

References