Lucene search

K
nvd[email protected]NVD:CVE-2018-8307
HistoryJul 11, 2018 - 12:29 a.m.

CVE-2018-8307

2018-07-1100:29:01
web.nvd.nist.gov
1

6.8 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

5.3 Medium

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

LOW

Integrity Impact

LOW

Availability Impact

LOW

CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L

5.2 Medium

AI Score

Confidence

High

0.003 Low

EPSS

Percentile

68.3%

A security feature bypass vulnerability exists when Microsoft WordPad improperly handles embedded OLE objects, aka “WordPad Security Feature Bypass Vulnerability.” This affects Windows 7, Windows Server 2012 R2, Windows RT 8.1, Windows Server 2008, Windows Server 2012, Windows 8.1, Windows Server 2016, Windows Server 2008 R2, Windows 10, Windows 10 Servers.

Affected configurations

NVD
Node
microsoftwindows_10Match-
OR
microsoftwindows_10Match1607
OR
microsoftwindows_10Match1703
OR
microsoftwindows_10Match1709
OR
microsoftwindows_10Match1803
Node
microsoftwindows_7Match-sp1
Node
microsoftwindows_8.1Match-
OR
microsoftwindows_rt_8.1Match-
Node
microsoftwindows_server_2008Match-sp2
OR
microsoftwindows_server_2008Match-sp2itanium
OR
microsoftwindows_server_2008Matchr2
OR
microsoftwindows_server_2008Matchr2sp1
OR
microsoftwindows_server_2008Matchr2sp1itanium
Node
microsoftwindows_server_2012Match-
OR
microsoftwindows_server_2012Matchr2
Node
microsoftwindows_server_2016Match-
OR
microsoftwindows_server_2016Match1709
OR
microsoftwindows_server_2016Match1803

6.8 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

5.3 Medium

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

LOW

Integrity Impact

LOW

Availability Impact

LOW

CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L

5.2 Medium

AI Score

Confidence

High

0.003 Low

EPSS

Percentile

68.3%