A remote code execution vulnerability exists in Microsoft Word software when the software fails to properly handle objects in Protected View, aka "Microsoft Word Remote Code Execution Vulnerability." This affects Microsoft SharePoint Server, Office 365 ProPlus, Microsoft Office, Microsoft Word.
References
Link | Resource |
---|---|
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8504 | Patch Vendor Advisory |
http://www.securitytracker.com/id/1041840 | Third Party Advisory VDB Entry |
http://www.securityfocus.com/bid/105499 | Third Party Advisory VDB Entry |
Configurations
Configuration 1 (hide)
|
Information
Published : 2018-10-10 06:29
Updated : 2019-10-02 17:03
NVD link : CVE-2018-8504
Mitre link : CVE-2018-8504
JSON object : View
CWE
Products Affected
microsoft
- office_365_proplus
- sharepoint_server
- office
- word
- office_web_apps