CVE-2021-40444 docx Generate

docx generating to exploit CVE-2021-40444 (Microsoft Office Word Remote Code Execution)

  1. create blink .docx file.
  2. add "Bitmap Image" object in "Insert/Object" menu.

Add Object

  1. save and unzip docx.
  2. modify word/_rels/document.xml.rels

Modify rels

  1. modify word/document.xml

Modify document

  1. zip folder and rename .docx
  2. prepare html and cab file.
  3. enjoy!