Word Automation Services

by Microsoft

Take action — actively targeted

Word Automation Services is actively targeted by attackers. A significant proportion of its known vulnerabilities are being exploited.

What to do
  1. Apply all available updates immediately
  2. Review your exposure — is this internet-facing?
  3. Monitor vendor advisories for this product

What Attackers Target

Vulnerabilities with high exploit probability 88.9%
Confirmed actively exploited (CISA) 0.0%
Public exploit code available 0.0%
Based on 9 known vulnerabilities. Percentages show the proportion that are actively dangerous — a low percentage means most vulnerabilities in this product are not being exploited.

Most Dangerous Vulnerabilities

CVE CVSS Exploit Probability Confirmed
CVE-2017-0105 5.5 43.2%
CVE-2018-1028 8.8 33.4%
CVE-2019-0585 8.8 28.2%
CVE-2018-8378 5.5 26.9%
CVE-2019-0561 5.5 23.1%
CVE-2016-7233 6.5 14.6%
CVE-2016-7291 7.1 10.9%
CVE-2016-7290 7.1 10.9%
CVE-2017-8512 8.8 8.6%
50
/ 100
high-risk
Active Threat 50/50 · Critical
Exploit Availability 0/50 · Minimal

Score uses Wilson score intervals to account for sample size. Products with few CVEs are scored conservatively.