CVE Vulnerabilities

CVE-2018-8161

Published: May 09, 2018 | Modified: Nov 21, 2024
CVSS 3.x
7.8
HIGH
Source:
NVD
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
CVSS 2.x
9.3 HIGH
AV:N/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

A remote code execution vulnerability exists in Microsoft Office software when the software fails to properly handle objects in memory, aka Microsoft Office Remote Code Execution Vulnerability. This affects Microsoft Word, Word, Microsoft Office, Microsoft SharePoint. This CVE ID is unique from CVE-2018-8157, CVE-2018-8158.

Affected Software

NameVendorStart VersionEnd Version
OfficeMicrosoft2010-sp2 (including)2010-sp2 (including)
OfficeMicrosoft2013-sp1 (including)2013-sp1 (including)
OfficeMicrosoft2016 (including)2016 (including)
Office_web_appsMicrosoft2010-sp2 (including)2010-sp2 (including)
Office_web_appsMicrosoft2013-sp1 (including)2013-sp1 (including)
Sharepoint_serverMicrosoft2010-sp2 (including)2010-sp2 (including)
Sharepoint_serverMicrosoft2013-sp1 (including)2013-sp1 (including)
Sharepoint_serverMicrosoft2016 (including)2016 (including)
WordMicrosoft2010-sp2 (including)2010-sp2 (including)
WordMicrosoft2013-sp1 (including)2013-sp1 (including)
WordMicrosoft2016 (including)2016 (including)

References