CVE-2018-8245
high · 7.8A remote code execution vulnerability exists when Microsoft Publisher fails to utilize features that lock down the Local Machine zone when instantiating OLE objects, aka "Microsoft Publisher Remote Code Execution Vulnerability." This affects Microsoft Publisher.
7.8
CVSS
16.9%
EPSS (exploit prob.)
97th
EPSS percentile
2018-06-14
Published
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| microsoft | publisher | 2010 |
Check a specific version with /api/v1/cve/match.
References
- http://www.securityfocus.com/bid/104405
- http://www.securitytracker.com/id/1041105
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8245
- http://www.securityfocus.com/bid/104405
- http://www.securitytracker.com/id/1041105
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8245
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2018-8245