ZeroHour

CVE-2018-0797

CVSS 3.0
7.8 high
EPSS
25%p98
Published
()
Modified
Description

Microsoft Office 2010, Microsoft Office 2013, and Microsoft Office 2016 allow a remote code execution vulnerability due to the way RTF content is handled, aka "Microsoft Word Memory Corruption Vulnerability".

Vendors
microsoft
Products
office, office compatibility pack, office online server, office web apps, office web apps server, sharepoint enterprise server, sharepoint server, word, word viewer
Weakness
CWE-787
Vector
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news