CVE-2015-2557: Microsoft Visio
High severity, CVSS 9.3. EPSS: 22.5% chance of exploitation in the next 30 days.
Buffer overflow in Microsoft Visio 2007 SP3 and 2010 SP2 allows remote attackers to execute arbitrary code via crafted UML data in an Office document, aka "Microsoft Office Memory Corruption Vulnerability."
Affected products
- Microsoft Visio: version 2007 only; version 2010 only
Published 2015-10-14. Last modified 2026-06-17.