CVE Vulnerabilities

CVE-2019-0585

Published: Jan 08, 2019 | Modified: Nov 21, 2024
CVSS 3.x
8.8
HIGH
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
CVSS 2.x
9.3 HIGH
AV:N/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory, aka Microsoft Word Remote Code Execution Vulnerability. This affects Word, Microsoft Office, Microsoft Office Word Viewer, Office 365 ProPlus, Microsoft SharePoint, Microsoft Office Online Server, Microsoft Word, Microsoft SharePoint Server.

Affected Software

NameVendorStart VersionEnd Version
OfficeMicrosoft2010-sp2 (including)2010-sp2 (including)
OfficeMicrosoft2016 (including)2016 (including)
OfficeMicrosoft2019 (including)2019 (including)
Office_365_proplusMicrosoft- (including)- (including)
Office_online_serverMicrosoft- (including)- (including)
Office_web_apps_serverMicrosoft2010-sp2 (including)2010-sp2 (including)
Office_word_viewerMicrosoft- (including)- (including)
Sharepoint_serverMicrosoft2013-sp1 (including)2013-sp1 (including)
Sharepoint_serverMicrosoft2016 (including)2016 (including)
Sharepoint_serverMicrosoft2019 (including)2019 (including)
WordMicrosoft2010-sp2 (including)2010-sp2 (including)
WordMicrosoft2013-sp1 (including)2013-sp1 (including)
WordMicrosoft2016 (including)2016 (including)
Word_automation_servicesMicrosoft- (including)- (including)

References