← All CVEs

CVE-2018-8501

high · 8.8

A remote code execution vulnerability exists in Microsoft PowerPoint software when the software fails to properly handle objects in Protected View, aka "Microsoft PowerPoint Remote Code Execution Vulnerability." This affects Office 365 ProPlus, PowerPoint Viewer, Microsoft Office, Microsoft PowerPoint.

8.8
CVSS
19.7%
EPSS (exploit prob.)
97th
EPSS percentile
2018-10-10
Published

CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Affected products

VendorProductAffected versions
microsoftoffice2010
microsoftoffice2013
microsoftoffice2013
microsoftoffice2016
microsoftoffice2019
microsoftoffice_365_proplusall versions
microsoftpowerpoint2010
microsoftpowerpoint2013
microsoftpowerpoint2013
microsoftpowerpoint2016
microsoftpowerpoint_viewer2012

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2018-8501