← Global Threat Landscape
CVE-2017-11826
CWE-119
Critical
91.6
RPSRPS range: 0–105; KEV-listed vulnerabilities can receive an exploitation amplifier.
Description
Microsoft Office 2010, SharePoint Enterprise Server 2010, SharePoint Server 2010, Web Applications, Office Web Apps Server 2010 and 2013, Word Viewer, Word 2007, 2010, 2013 and 2016, Word Automation Services, and Office Online Server allow remote code execution when the software fails to properly handle objects in memory.
Source: NVD
Signals
- CVSS
- 7.8
- High · v3.1
- EPSS
- 81.15%
- Probability of exploitation in the next 30 days (FIRST)
- CISA KEV
- In CISA KEV since Mar 2022
- Fix commit
- No known fix commit
- Sources: MoreFixes, FreshFixes
- Weakness
- CWE-119
- Published
- 13 Oct 2017
- Last modified 22 Apr 2026
How to read these signals: RPS · EPSS · CISA KEV · Data sources
Get this score from the API
curl -H "Authorization: Bearer dsec_live_xxxxxxxx" \
https://api.intelligence.devsecure.io/api/v1/rps/CVE-2017-11826Replace the placeholder with your key. Get a free API key or rank your own CVEs.
Data as of 8 Oct 2026, 05:16 UK time