CVE Vulnerabilities

CVE-2018-8161

Published: May 09, 2018 | Modified: Aug 24, 2020
CVSS 3.x
7.8
HIGH
Source:
NVD
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
CVSS 2.x
9.3 HIGH
AV:N/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

A remote code execution vulnerability exists in Microsoft Office software when the software fails to properly handle objects in memory, aka Microsoft Office Remote Code Execution Vulnerability. This affects Microsoft Word, Word, Microsoft Office, Microsoft SharePoint. This CVE ID is unique from CVE-2018-8157, CVE-2018-8158.

Affected Software

Name Vendor Start Version End Version
Office Microsoft 2010-sp2 (including) 2010-sp2 (including)
Office Microsoft 2013-sp1 (including) 2013-sp1 (including)
Office Microsoft 2016 (including) 2016 (including)
Office_web_apps Microsoft 2010-sp2 (including) 2010-sp2 (including)
Office_web_apps Microsoft 2013-sp1 (including) 2013-sp1 (including)
Sharepoint_server Microsoft 2010-sp2 (including) 2010-sp2 (including)
Sharepoint_server Microsoft 2013-sp1 (including) 2013-sp1 (including)
Sharepoint_server Microsoft 2016 (including) 2016 (including)
Word Microsoft 2010-sp2 (including) 2010-sp2 (including)
Word Microsoft 2013-sp1 (including) 2013-sp1 (including)
Word Microsoft 2016 (including) 2016 (including)

References