CVE Vulnerabilities

CVE-2018-8628

Published: Dec 12, 2018 | Modified: Nov 21, 2024
CVSS 3.x
7.8
HIGH
Source:
NVD
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
CVSS 2.x
9.3 HIGH
AV:N/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

A remote code execution vulnerability exists in Microsoft PowerPoint software when the software fails to properly handle objects in memory, aka Microsoft PowerPoint Remote Code Execution Vulnerability. This affects Microsoft Office, Office 365 ProPlus, Microsoft PowerPoint, Microsoft SharePoint, Microsoft PowerPoint Viewer, Office Online Server, Microsoft SharePoint Server.

Affected Software

NameVendorStart VersionEnd Version
OfficeMicrosoft2016 (including)2016 (including)
OfficeMicrosoft2019 (including)2019 (including)
Office_365_proplusMicrosoft- (including)- (including)
Office_compatibility_packMicrosoft–sp3 (including)–sp3 (including)
Office_online_serverMicrosoft**
Office_web_appsMicrosoft2010-sp2 (including)2010-sp2 (including)
Office_web_appsMicrosoft2013-sp1 (including)2013-sp1 (including)
PowerpointMicrosoft2010-sp2 (including)2010-sp2 (including)
PowerpointMicrosoft2013-sp1 (including)2013-sp1 (including)
PowerpointMicrosoft2016 (including)2016 (including)
Powerpoint_viewerMicrosoft**
Sharepoint_enterprise_serverMicrosoft2016 (including)2016 (including)
Sharepoint_serverMicrosoft2013-sp1 (including)2013-sp1 (including)
Sharepoint_serverMicrosoft2019 (including)2019 (including)

References