CVE-2018-8575
high · 7.8A remote code execution vulnerability exists in Microsoft Project software when it fails to properly handle objects in memory, aka "Microsoft Project Remote Code Execution Vulnerability." This affects Microsoft Project, Office 365 ProPlus, Microsoft Project Server.
7.8
CVSS
19.5%
EPSS (exploit prob.)
97th
EPSS percentile
2018-11-14
Published
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| microsoft | office_365_proplus | all versions |
| microsoft | project | 2010 |
| microsoft | project | 2013 |
| microsoft | project | 2016 |
Check a specific version with /api/v1/cve/match.
References
- http://www.securityfocus.com/bid/105807
- http://www.securitytracker.com/id/1042116
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8575
- http://www.securityfocus.com/bid/105807
- http://www.securitytracker.com/id/1042116
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8575
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2018-8575