CVE-2018-0797
Microsoft Office 2010, Microsoft Office 2013, and Microsoft Office 2016 allow a remote code execution vulnerability due to the way RTF content is handled, aka "Microsoft Word Memory Corruption Vulnerability".
- Affected products
- Office, Office Word, Sharepoint Server
- Microsoft Office
- = 2010, 2016
- Microsoft Office Compatibility Pack
- All versions
- Microsoft Office Online Server
- = 2016
- Microsoft Office Web Apps
- = 2010
- Microsoft Office Web Apps Server
- = 2013
- Microsoft Sharepoint Enterprise Server
- = 2013, 2016
- Fix
- Available
- CVSS 2.0
- 9.3 HIGH
- CVSS 3.1
- 7.8 HIGH
- EPSS
- 24.8% (98th percentile)
- Weakness
- CWE-787
- NVD status
- Modified
- Published
- 2018-01-10
CVE-2018-0797 at NVD
No indexed exploits for CVE-2018-0797 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2018-0797 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.