
Written by skraitoJuly 15, 2025
[ 0day (xc) Our ] Microsoft PowerPoint 2019 Remote Code Execution 2025 0day EXPLOIT CODE BY skraito with skraitow … . Enjoy Patching … .
0day . Exploit-0day . Public-Release-Code Article
Date: 2025-07-02
Tested on: Microsoft PowerPoint 2019 / Office 365 (version before June 2025 Patch)
CVE: CVE-2025-47175
Type: Use-After-Free (UAF) Remote Code Execution (local user required)
Platform: Windows (PowerPoint)
Author Country: Jordan
Attack Vector: Local (User must open crafted PPTX file)
Description:
This exploit leverages a Use-After-Free vulnerability in Microsoft PowerPoint
allowing an attacker to execute arbitrary code by tricking a user into opening
a specially crafted PPTX file. This PoC generates such a malicious PPTX file
designed to trigger the UAF condition.
Steps of exploitation:
- Run this script to generate the malicious PPTX file.
- Send or trick the target user to open this file in a vulnerable PowerPoint version.
- Exploit triggers upon opening the file, leading to possible code execution. Note: This PoC creates a simplified PPTX file structure with crafted XML designed
to trigger the vulnerability. For a full exploit, further memory manipulation and shellcode injection
are required (not included here). Affected Versions:
Microsoft PowerPoint versions prior to June 2025 patch (KB5002689) Usage:
python3 exploit_cve2025_47175.py [options] Options:
-o, –output Output PPTX filename (default: exploit_cve_2025_47175.pptx)
-i, –id Shape ID (default: 1234)
-n, –name Shape Name (default: MaliciousShape)
-t, –text Trigger text inside the slide (default: explanation message) Example:
python3 exploit_cve2025_47175.py -o evil.pptx -i 5678 -n “BadShape” -t “Triggering CVE-2025-47175 now!”
You may also like
Archives
Categories
- [ 0day (xc) Our ] Astara Mail System
- [ 0day (xc) Our ] AstaraOS Playstation 1
- [ 0day (xc) Our ] AstaraOS Unity Engine
- [ 0day (xc) Our ] AstaraOS Unreal Engine
- [ 0day (xc) Our ] Chef Related
- [ 0day (xc) Our ] Current World Game
- [ 0day (xc) Our ] Game Public Release
- [ 0day (xc) Our ] Libera Chat Irc Server
- [ 0day (xc) Our ] Music Our Album
- [ 0day (xc) Our ] OS
- [ 0day (xc) Our ] OS Antivirus And Firewall
- [ 0day (xc) Our ] OS AstaraOS Worldhacker Site 2025 Release
- [ 0day (xc) Our ] OS Graphic Related
- [ 0day (xc) Our ] OS Office
- [ 0day (xc) Our ] OS Performance Tuning
- [ 0day (xc) Our ] OS Tool
- [ 0day (xc) Our ] OS xWindow 13
- [ 0day (xc) Our ] OS xWindow 2025 Datacenter
- [ 0day (xc) Our ] What Heaven Look Like
- [ 0day (xc) Our ] Whatsapp
- [ 0day (xc) Our ] Word Of Encouragement
- [ 0day (xc0 Our ] Windows 10
- 0day
- 0day Anime Watch Online
- About Making Game and Game Engine
- Agriculture
- AI Secret
- AntiVirus Evasion Technique
- AstaraOS
- AstaraOS Android
- AstaraOS Eggdrop
- AstaraOS Facebook
- AstaraOS Fedora
- AstaraOS Fedora Server
- AstaraOS FreeBSD
- AstaraOS Joomla
- AstaraOS Linkedin
- AstaraOS News
- AstaraOS Perl
- AstaraOS Photoshop
- AstaraOS Python
- AstaraOS Related
- AstaraOS Solaris Omnios
- AstaraOS Trojan Souce Code
- AstaraOS Ubuntu
- AstaraOS VirtualBox
- AstaraOS Wordpress
- Blackcat Anime
- Crayon Sinchan
- Crypto Bitcoin
- Crypto Thesis
- Demon School! Iruma-kun
- Donald Duck And Friend
- Dr. Stone Season 1
- Dr. Stone Season 2
- Exploit-0day
- Fairy Tail
- Game Source Code
- God and Christianity
- How Everything Work PHD Thesis
- Hunter X Hunter
- Lord Jesus Christ
- Medic Research
- PhD Examination
- PhD Graduation
- PHD Social Science Certification
- PhD Social Science Graduation
- PHD THESIS
- Project
- Public-Release-Code
- Quantum Computer
- Ragna Crimson
- Rurouni Kenshin -Kyoto Disturbance-
- Security Tutorial
- skraito and skraitow Master Thesis
- skraito and skraitow PhD Thesis
- The Seven Dealy Sins
- Top 100 University
- Top 100 University Name Que
- Uncategorized
- What Hell Look Like
- World Game By Us
- World Havoc Tarif
- World Tarif Secret
- worldhacker.org Picture Release
- worldhacker.org.backup
- WormGPT
Leave a Reply