Lucene search

K
cvelistMicrosoftCVELIST:CVE-2018-1028
HistoryApr 12, 2018 - 1:00 a.m.

CVE-2018-1028

2018-04-1201:00:00
microsoft
www.cve.org
8

AI Score

8.4

Confidence

High

EPSS

0.135

Percentile

95.7%

A remote code execution vulnerability exists when the Office graphics component improperly handles specially crafted embedded fonts, aka “Microsoft Office Graphics Remote Code Execution Vulnerability.” This affects Word, Microsoft Office, Microsoft SharePoint, Excel, Microsoft SharePoint Server.

CNA Affected

[
  {
    "product": "Word",
    "vendor": "Microsoft",
    "versions": [
      {
        "status": "affected",
        "version": "Automation Services on Microsoft SharePoint Server 2010 Service Pack 2"
      },
      {
        "status": "affected",
        "version": "Automation Services on Microsoft SharePoint Server 2013 Service Pack 1"
      }
    ]
  },
  {
    "product": "Microsoft Office",
    "vendor": "Microsoft",
    "versions": [
      {
        "status": "affected",
        "version": "2010 Service Pack 2 (32-bit editions)"
      },
      {
        "status": "affected",
        "version": "2010 Service Pack 2 (64-bit editions)"
      },
      {
        "status": "affected",
        "version": "2013 RT Service Pack 1"
      },
      {
        "status": "affected",
        "version": "2013 Service Pack 1 (32-bit editions)"
      },
      {
        "status": "affected",
        "version": "2013 Service Pack 1 (64-bit editions)"
      },
      {
        "status": "affected",
        "version": "2016 (32-bit edition)"
      },
      {
        "status": "affected",
        "version": "2016 (64-bit edition)"
      },
      {
        "status": "affected",
        "version": "Web Apps 2010 Service Pack 2"
      },
      {
        "status": "affected",
        "version": "Web Apps Server 2013 Service Pack 1"
      }
    ]
  },
  {
    "product": "Microsoft SharePoint",
    "vendor": "Microsoft",
    "versions": [
      {
        "status": "affected",
        "version": "Enterprise Server 2016"
      }
    ]
  },
  {
    "product": "Excel",
    "vendor": "Microsoft",
    "versions": [
      {
        "status": "affected",
        "version": "Services on Microsoft SharePoint Enterprise Server 2013 Service Pack 1"
      }
    ]
  },
  {
    "product": "Microsoft SharePoint Server",
    "vendor": "Microsoft",
    "versions": [
      {
        "status": "affected",
        "version": "2013 Service Pack 1"
      }
    ]
  }
]

AI Score

8.4

Confidence

High

EPSS

0.135

Percentile

95.7%