CVE-2017-8743: Microsoft Office Online Server
High severity, CVSS 7.8. EPSS: 22.1% chance of exploitation in the next 30 days.
A remote code execution vulnerability exists in Microsoft PowerPoint 2016, Microsoft SharePoint Enterprise Server 2016, and Office Online Server when they fail to properly handle objects in memory, aka "PowerPoint Remote Code Execution Vulnerability". This CVE ID is unique from CVE-2017-8742.
Affected products
- Microsoft Office Online Server: any version
- Microsoft PowerPoint: version 2016 only
- Microsoft SharePoint Server: version 2016 only
Published 2017-09-13. Last modified 2026-06-17.