Rewterz
Rewterz Threat Alert – DarkComet RAT (Remote Access Trojan) – Active IOCs
February 20, 2023
Rewterz
Rewterz Threat Advisory – CVE-2023-21717 – Microsoft SharePoint Server Vulnerability
February 20, 2023

Rewterz Threat Advisory – CVE-2023-21716 – Microsoft Word Vulnerability

Severity

High

Analysis Summary

CVE-2023-21716

Microsoft Word could allow a remote attacker to execute arbitrary code on the system. By sending a specially-crafted request, an attacker could exploit this vulnerability to execute arbitrary code on the system.

Impact

  • Code Execution

Indicators Of Compromise

CVE

  • CVE-2023-21716

Affected Vendors

Microsoft

Affected Products

  • Microsoft Office 2013 RT
  • Microsoft Word 2013 RT
  • Microsoft SharePoint Foundation 2013 SP1
  • Microsoft Word 2013 SP1 x64
  • Microsoft Word 2016 x32
  • Microsoft Word 2016 x64
  • Microsoft Office Online Server
  • Microsoft SharePoint Enterprise Server 2016
  • Microsoft Office 2016 Click-to-Run x32
  • Microsoft Office 2016 Click-to-Run x64
  • Microsoft Office 2019 Click-to-Run x32
  • Microsoft Office 2019 Click-to-Run x64
  • Microsoft Office 2019 Mac
  • Microsoft SharePoint Server 2019
  • Microsoft Office 2013 Click-to-Run (C2R) for 32-bit editions
  • Microsoft Office 2013 Click-to-Run (C2R) for 64-bit editions
  • Microsoft 365 Apps for Enterprise x32
  • Microsoft 365 Apps for Enterprise x64
  • Microsoft Office LTSC 2021 x32
  • Microsoft Office LTSC 2021 x64
  • Microsoft Office LTSC for Mac 2021
  • Microsoft Office Web Apps Server 2013 SP1

Remediation

Use Microsoft Automatic Update to apply the appropriate patch for your system, or the Microsoft Security Update Guide to search for available patches.

CVE-2023-21716