CVE-2017-0199: Microsoft Office and WordPad Remote Code Execution
Microsoft Office and WordPad Remote Code Execution Vulnerability. Microsoft Office and WordPad contain an unspecified vulnerability due to the way the applications parse specially crafted files. Successful exploitation allows for remote code execution.
- CISA KEV-listed (remediation due 2022-05-03)
- used in ransomware campaigns
- EPSS 99.9% (100.0% percentile)
- CVSS 7.8 high
Related briefings
- Fake invoices and proposals target Korean firms with stealer malware 2026-07-13
- Leviathan: Chinese Espionage Actor Targets Maritime, Naval Defense, and Military Research with Orz, NanHaiShu, and Cobalt Strike 2026-02-16
Linked threat actors
- TA459 machine-inferred link
- APT40 machine-inferred link
- Cobalt Group machine-inferred link
- The Gorgon Group machine-inferred link