Microsoft Word 2016 and SharePoint Enterprise Server 2016 allow remote attackers to execute arbitrary code via a crafted document, aka "Microsoft Office Memory Corruption Vulnerability."
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2017/ms17-002
http://www.securitytracker.com/id/1037569
http://www.securitytracker.com/id/1037568