Microsoft Excel contains a remote code execution vulnerability upon processing OLE objects. Versions 2007, 2010, 2013, and 2016 are affected on both architectures.
392bd639166e0212b119a8558394e917be8f6bb220eb43af93908f49838cb4c8
This exploit leverages an MTA handler remote code execution vulnerability in Microsoft Word.
65b89848eff3dfa0514bb59a5330c3a17145a3d071de4db54112a08e95e91b96
This Metasploit module creates a malicious RTF file that when opened in vulnerable versions of Microsoft Word will lead to code execution. The flaw exists in how an olelink object can make a http(s) request, and execute hta code in response. This bug was originally seen being exploited in the wild starting in Oct 2016. This Metasploit module was created by reversing a public malware sample.
7e6b9ea3c2f7098466493a6d04a3625fe49a4a591628f01dcefb67c6615f8b03
Microsoft RTF CVE-2017-0199 proof of concept exploit.
94860eb2041748a74ccdfe99ad24e8276e83a03535808e480542e01b7dde6104
This article documents practical exploitation of CVE-2017-0199 and includes a proof of concept.
7e95162e6d74646b2e07b57b6589a73c89a2105aa6fc97d5f1fd7552b825222e
Microsoft Word RTF remote code execution proof of concept exploit.
e3af621ee635b743874aebf34413bfde2f9b300518dd7ab7af4dfce56b891d5c