Vulnerability Details CVE-2018-0797
Microsoft Office 2010, Microsoft Office 2013, and Microsoft Office 2016 allow a remote code execution vulnerability due to the way RTF content is handled, aka "Microsoft Word Memory Corruption Vulnerability".
Exploit prediction scoring system (EPSS) score
EPSS Score 0.352
EPSS Ranking 96.8%
CVSS Severity
CVSS v3 Score 7.8
CVSS v2 Score 9.3
Products affected by CVE-2018-0797
-
cpe:2.3:a:microsoft:office:2010
-
cpe:2.3:a:microsoft:office:2016
-
cpe:2.3:a:microsoft:office_compatibility_pack:-
-
cpe:2.3:a:microsoft:office_online_server:2016
-
cpe:2.3:a:microsoft:office_web_apps:2010
-
cpe:2.3:a:microsoft:office_web_apps_server:2013
-
cpe:2.3:a:microsoft:sharepoint_enterprise_server:2013
-
cpe:2.3:a:microsoft:sharepoint_enterprise_server:2016
-
cpe:2.3:a:microsoft:sharepoint_server:2010
-
cpe:2.3:a:microsoft:word:2007
-
cpe:2.3:a:microsoft:word:2010
-
cpe:2.3:a:microsoft:word:2013
-
cpe:2.3:a:microsoft:word:2016
-
cpe:2.3:a:microsoft:word_viewer:-
-
cpe:2.3:a:microsoft:word_viewer:2003