CVE-2012-2550: Microsoft Works

High severity, CVSS 9.3. EPSS: 22.2% chance of exploitation in the next 30 days.

Microsoft Works 9 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via a crafted Word .doc file, aka "Works Heap Vulnerability."

Affected products

Published 2012-10-09. Last modified 2026-06-16.