CVE-2015-0064: Critical severity microsoft web applications vulnerability
Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word Automation Services in SharePoint Server 2010, Web Applications 2010 SP2, Word Viewer, and Office Compatibility Pack SP3 allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted Office document, aka "Office Remote Code Execution Vulnerability."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-0064?
CVE-2015-0064 has a high severity rating due to its potential to allow remote code execution or denial of service.
How do I fix CVE-2015-0064?
To fix CVE-2015-0064, apply the latest security patches provided by Microsoft for the affected software.
What software is affected by CVE-2015-0064?
CVE-2015-0064 affects Microsoft Word 2007 SP3, Office 2010 SP2, Word Automation Services, and several other Microsoft applications.
Can I still use the affected versions of Microsoft products if CVE-2015-0064 is present?
It is highly discouraged to use affected versions of Microsoft products without applying the necessary updates for CVE-2015-0064.
What type of attacks can CVE-2015-0064 enable?
CVE-2015-0064 can enable attackers to execute arbitrary code or cause a denial of service through crafted Office documents.