CVE-2017-0003: Microsoft SharePoint Enterprise Server

High severity, CVSS 7.8. EPSS: 24.7% chance of exploitation in the next 30 days.

Microsoft Word 2016 and SharePoint Enterprise Server 2016 allow remote attackers to execute arbitrary code via a crafted document, aka "Microsoft Office Memory Corruption Vulnerability."

Affected products

  • Microsoft SharePoint Enterprise Server: version 2016 only
  • Microsoft Word: version 2016 only

Published 2017-01-10. Last modified 2026-06-17.