← Back

CVE-2018-8310

nvd nist
Published: Jul 11, 2018Modified: Nov 21, 2024

JSON object

Loading...
7.5
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Exploitability: 3.9 / Impact: 3.6
Source: NVD

Description

A tampering vulnerability exists when Microsoft Outlook does not properly handle specific attachment types when rendering HTML emails, aka "Microsoft Office Tampering Vulnerability." This affects Microsoft Word, Microsoft Office.

Affected (6)

Products: Microsoft: Office, Word
2 products
Office
Word
Configuration A
2 vulnerable
Vulnerable SoftwareAffected Versions
Microsoft
Version 2010 sp2
Version 2016
Configuration B
4 vulnerable
Vulnerable SoftwareAffected Versions
Microsoft
Version 2010 sp2
Version 2013 sp1
Version 2013 sp1
Version 2016

References (6)

Source: secure@microsoft.com
Third Party AdvisoryVDB Entry
Source: secure@microsoft.com
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory

Timeline

No history available yet.