vendor:
Office
by:
embedi
7,8
CVSS
HIGH
Remote Code Execution
78
CWE
Product Name: Office
Affected Version From: Microsoft Office 2007
Affected Version To: Microsoft Office 2016
Patch Exists: Yes
Related CWE: CVE-2017-11882
CPE: a:microsoft:office
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows
2017
webdav_exec CVE-2017-11882
This exploit triggers WebClient service to start and execute remote file from attacker-controlled WebDav server. The reason why this approach might be handy is a limitation of executed command length. However with help of WebDav it is possible to launch arbitrary attacker-controlled executable on vulnerable machine. This script creates simple document with several OLE objects. These objects exploits CVE-2017-11882, which results in sequential command execution.
Mitigation:
Microsoft has released a patch for this vulnerability.