High severity7.8NVD Advisory· Published Sep 14, 2016· Updated May 6, 2026
CVE-2016-3365
CVE-2016-3365
Description
Microsoft Excel 2007 SP3, Excel 2010 SP2, Excel 2013 SP1, Excel 2013 RT SP1, Excel 2016, Office Compatibility Pack SP3, Excel Viewer, Excel Services on SharePoint Server 2007 SP3, Excel Services on SharePoint Server 2010 SP2, Excel Automation Services on SharePoint Server 2013 SP1, and Office Online Server allow remote attackers to execute arbitrary code via a crafted document, aka "Microsoft Office Memory Corruption Vulnerability," a different vulnerability than CVE-2016-3362.
Affected products
11cpe:2.3:a:microsoft:excel:2007:sp3:*:*:*:*:*:*+ 4 more
- cpe:2.3:a:microsoft:excel:2007:sp3:*:*:*:*:*:*
- cpe:2.3:a:microsoft:excel:2010:sp2:*:*:*:*:*:*
- cpe:2.3:a:microsoft:excel:2013:sp1:*:*:*:*:*:*
- cpe:2.3:a:microsoft:excel:2013:sp1:*:*:rt:*:*:*
- cpe:2.3:a:microsoft:excel:2016:*:*:*:*:*:*:*
- cpe:2.3:a:microsoft:excel_viewer:*:*:*:*:*:*:*:*
- cpe:2.3:a:microsoft:office_compatibility_pack:*:sp3:*:*:*:*:*:*
- cpe:2.3:a:microsoft:office_online_server:*:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:sharepoint_designer:2007:sp3:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:microsoft:sharepoint_designer:2007:sp3:*:*:*:*:*:*
- cpe:2.3:a:microsoft:sharepoint_designer:2010:sp2:*:*:*:*:*:*
- cpe:2.3:a:microsoft:sharepoint_designer:2013:sp1:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- www.securityfocus.com/bid/92804nvdThird Party AdvisoryVDB Entry
- www.securitytracker.com/id/1036785nvdThird Party AdvisoryVDB Entry
- docs.microsoft.com/en-us/security-updates/securitybulletins/2016/ms16-107nvd
News mentions
0No linked articles in our index yet.