Microsoft Outlook 2007 SP3, Microsoft Outlook 2010 SP2, Microsoft Outlook 2013 SP1 and RT SP1, Microsoft Outlook 2016, and Microsoft Office 2016 Click-to-Run (C2R) allow a remote code execution vulnerability, due to how Outlook handles objects in memory, aka "Microsoft Office Memory Corruption Vulnerability". This CVE is unique from CVE-2018-0851.
2018-02-15T02:29:03.140
2024-11-21T03:39:05.623
Modified
CVSSv3.0: 8.8 (HIGH)
AV:N/AC:M/Au:N/C:C/I:C/A:C
8.6
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | microsoft | office | 2016 | Yes |
Application | microsoft | office | 2016 | Yes |
Application | microsoft | outlook | 2010 | Yes |
Application | microsoft | outlook | 2013 | Yes |
Application | microsoft | outlook | 2013 | Yes |
Application | microsoft | outlook | 2016 | Yes |