9.3
CVE-2018-8504
- EPSS 26.63%
- Veröffentlicht 10.10.2018 13:29:05
- Zuletzt bearbeitet 21.11.2024 04:13:57
- Quelle secure@microsoft.com
- CVE-Watchlists
- Unerledigt
A remote code execution vulnerability exists in Microsoft Word software when the software fails to properly handle objects in Protected View, aka "Microsoft Word Remote Code Execution Vulnerability." This affects Microsoft SharePoint Server, Office 365 ProPlus, Microsoft Office, Microsoft Word.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ Office 365 Proplus Version-
Microsoft ≫ Office Web Apps Version2010 Updatesp2
Microsoft ≫ Sharepoint Server Version2010 Updatesp2
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 26.63% | 0.961 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 8.8 | 2.8 | 5.9 |
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
|
| nvd@nist.gov | 9.3 | 8.6 | 10 |
AV:N/AC:M/Au:N/C:C/I:C/A:C
|