CVE-2016-7265: High severity microsoft office excel vulnerability
Microsoft Excel 2007 SP3, Excel 2010 SP2, Excel 2013 SP1, Excel 2013 RT SP1, Excel 2016, Office Compatibility Pack SP3, Excel Viewer, Excel Services on SharePoint Server 2007 SP3, and Excel Services on SharePoint Server 2010 SP2 allow remote attackers to obtain sensitive information from process memory or cause a denial of service (out-of-bounds read) via a crafted document, aka "Microsoft Office Information Disclosure Vulnerability."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-7265?
CVE-2016-7265 is rated as important, indicating a significant risk of exploitation.
How do I fix CVE-2016-7265?
To mitigate CVE-2016-7265, you should apply the relevant security updates provided by Microsoft for the affected versions of Excel and SharePoint.
What products are affected by CVE-2016-7265?
CVE-2016-7265 affects Microsoft Excel 2007 SP3, 2010 SP2, 2013 SP1, 2016, and Excel Services on SharePoint Server 2007 and 2010.
Can CVE-2016-7265 lead to data leakage?
Yes, CVE-2016-7265 can allow remote attackers to obtain sensitive information from the memory of affected processes.
Is there a workaround for CVE-2016-7265?
There are no known workarounds for CVE-2016-7265; the best approach is to apply the security updates provided by Microsoft.