← All CVEs

CVE-2018-8575

high · 7.8

A remote code execution vulnerability exists in Microsoft Project software when it fails to properly handle objects in memory, aka "Microsoft Project Remote Code Execution Vulnerability." This affects Microsoft Project, Office 365 ProPlus, Microsoft Project Server.

7.8
CVSS
19.5%
EPSS (exploit prob.)
97th
EPSS percentile
2018-11-14
Published

CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Affected products

VendorProductAffected versions
microsoftoffice_365_proplusall versions
microsoftproject2010
microsoftproject2013
microsoftproject2016

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2018-8575