Stats
- First seen
- December 2023
- Last seen
- October 2026
Description
Detects an RTF document exploiting CVE-2015-2369 or CVE-2023-36884, remote code execution flaws reached through embedded object links. The rule matches the automatic link object data that pulls remote content into the document's execution context.
