Microsoft Outlook 2010 SP2, Outlook 2013 SP1 and RT SP1, and Outlook 2016 allow an attacker to execute arbitrary commands, due to how Microsoft Office handles objects in memory, aka "Microsoft Outlook Security Feature Bypass Vulnerability."
Metrics
Affected Vendors & Products
References
History
Wed, 16 Jul 2025 13:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
epss
|
epss
|
Sat, 12 Jul 2025 13:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
epss
|
epss
|
Mon, 10 Feb 2025 20:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
kev
|

Status: PUBLISHED
Assigner: microsoft
Published: 2017-10-13T13:00:00.000Z
Updated: 2025-07-30T01:46:21.306Z
Reserved: 2017-07-31T00:00:00.000Z
Link: CVE-2017-11774

Updated: 2024-08-05T18:19:39.015Z

Status : Deferred
Published: 2017-10-13T13:29:00.427
Modified: 2025-04-20T01:37:25.860
Link: CVE-2017-11774

No data.