9.3
CVE-2018-8628
- EPSS 16.2%
- Veröffentlicht 12.12.2018 00:29:01
- Zuletzt bearbeitet 21.11.2024 04:14:08
- Erkennungen
A remote code execution vulnerability exists in Microsoft PowerPoint software when the software fails to properly handle objects in memory, aka "Microsoft PowerPoint Remote Code Execution Vulnerability." This affects Microsoft Office, Office 365 ProPlus, Microsoft PowerPoint, Microsoft SharePoint, Microsoft PowerPoint Viewer, Office Online Server, Microsoft SharePoint Server.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ Office 365 Proplus Version -
Microsoft ≫ Office Compatibility Pack Version - Update sp3
Microsoft ≫ Office Web Apps Version 2010 Update sp2
Microsoft ≫ Office Web Apps Version 2013 Update sp1
Microsoft ≫ Powerpoint Version 2010 Update sp2
Microsoft ≫ Powerpoint Version 2013 Update sp1 SwEdition rt
Microsoft ≫ Powerpoint Version 2016
Microsoft ≫ Sharepoint Enterprise Server Version 2016
Microsoft ≫ Sharepoint Server Version 2013 Update sp1
Microsoft ≫ Sharepoint Server Version 2019
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 16.2% | 0.965 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 7.8 | 1.8 | 5.9 |
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
|
| NIST | 9.3 | 8.6 | 10 |
AV:N/AC:M/Au:N/C:C/I:C/A:C
|
http://www.securityfocus.com/bid/106104
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8628