Equation Editor in Microsoft Office 2007, Microsoft Office 2010, Microsoft Office 2013, and Microsoft Office 2016 allow a remote code execution vulnerability due to the way objects are handled in memory, aka "Microsoft Office Memory Corruption Vulnerability". This CVE is unique from CVE-2018-0797 and CVE-2018-0812.
2018-01-10T01:29:00.820
2025-03-26T16:16:43.773
Analyzed
CVSSv3.1: 7.8 (HIGH)
AV:N/AC:M/Au:N/C:C/I:C/A:C
8.6
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | microsoft | office | 2007 | Yes |
Application | microsoft | office | 2010 | Yes |
Application | microsoft | office | 2013 | Yes |
Application | microsoft | office | 2016 | Yes |
Application | microsoft | office | 2016 | Yes |
Application | microsoft | office_compatibility_pack | - | Yes |
Application | microsoft | word | 2007 | Yes |
Application | microsoft | word | 2010 | Yes |
Application | microsoft | word | 2013 | Yes |
Application | microsoft | word | 2013 | Yes |
Application | microsoft | word | 2016 | Yes |