CVE-2018-1037
An information disclosure vulnerability exists when Visual Studio improperly discloses limited contents of uninitialized memory while compiling program database (PDB) files, aka "Microsoft Visual Studio Information Disclosure Vulnerability." This affects Microsoft Visual Studio.
- Affected products
- Visual Studio
- Microsoft Visual Studio
- = 2010, 2012, 2013, 2015, 2017
- Microsoft Visual Studio 2017
- = 15.6.6, 15.7
- CVSS 3.0
- 4.3 MEDIUM
- EPSS
- 6.0% (93th percentile)
- Weakness
- CWE-908
- NVD status
- Modified
- Published
- 2018-04-12
CVE-2018-1037 at NVD
No indexed exploits for CVE-2018-1037 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2018-1037 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.