Field Assessment
AI analysis pending.
Exhibit — Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Detected Signals
remote code execution code execution
GitHub PoC Links
Note: these links are listed for security research and verification purposes only.
Cross-Reference — CISA KEV
Status: This CVE is listed in CISA's Known Exploited Vulnerabilities catalog.
Ransomware use: Unknown
Added to KEV: 2022-02-25
Required action: Apply updates per vendor instructions.
CVE
CVE-2017-8570
Severity
HIGH
CVSS
7.8
EPSS
85.61%
Microsoft Office
Original Filing — NVD Description
Microsoft Office allows a remote code execution vulnerability due to the way that it handles objects in memory, aka "Microsoft Office Remote Code Execution Vulnerability". This CVE ID is unique from CVE-2017-0243.