← All CVEs

CVE-2018-8265

high · 7.8

A remote code execution vulnerability exists in the way Microsoft Exchange software parses specially crafted email messages, aka "Microsoft Exchange Remote Code Execution Vulnerability." This affects Microsoft Exchange Server.

7.8
CVSS
19.3%
EPSS (exploit prob.)
97th
EPSS percentile
2018-10-10
Published

CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Weaknesses

CWE-20

Affected products

VendorProductAffected versions
microsoftexchange_server2013
microsoftexchange_server2016

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2018-8265