V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsProductsVendorsDocs
BDU:2018-00401
BDU
High

Уязвимость почтового клиента Microsoft Outlook, пакета программ Microsoft Office и средства просмотра текстовых документов Microsoft Office…

CVSS
8.8
High
EPSS
0.00
p0
Published
2018-01-01
Updated
2018-01-01
Description

Уязвимость почтового клиента Microsoft Outlook, пакета программ Microsoft Office и средства просмотра текстовых документов Microsoft Office Word Viewer вызвана выходом операции за границы буфера в памяти. Эксплуатация уязвимости может позволить нарушителю, действующему удалённо, выполнить произвольный код

Tags · CWE
Pre-auth
Affected products
Microsoft corp Microsoft office 2016Microsoft corp Microsoft office 2016 click-to-run (c2r)Microsoft corp Microsoft office word viewerMicrosoft corp Microsoft outlook 2007 service pack 3Microsoft corp Microsoft outlook 2010 service pack 2Microsoft corp Microsoft outlook 2013 rt service pack 1Microsoft corp Microsoft outlook 2013 service pack 1Microsoft corp Microsoft outlook 2016Microsoft WindowsMicrosoft WindowsMicrosoft WindowsMicrosoft WindowsMicrosoft WindowsMicrosoft WindowsMicrosoft WindowsMicrosoft WindowsMicrosoft WindowsMicrosoft WindowsMicrosoft WindowsMicrosoft Windows
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Timeline
2018-01-01
Published
2018-01-01
Updated
CVSS 3.1 breakdown
Attack Vector
AV: N
Network (N)
Attack Complexity
AC: L
Low (L)
Privileges Required
PR: N
None (N)
User Interaction
UI: R
Required (R)
Scope
S: U
Unchanged (U)
Confidentiality Impact
C: H
High (H)
Integrity Impact
I: H
High (H)
Availability Impact
A: H
High (H)
Exploit indicators
EPSS
0.000 · p0
Known exploited (KEV)
No
Known exploits — Сканер-ВС
No Сканер-ВС checks registered for this vulnerability yet.
Affected products
ProductVendorStatus
microsoft office 2016microsoft corpTracked
microsoft office 2016 click-to-run (c2r)microsoft corpTracked
microsoft office word viewermicrosoft corpTracked
microsoft outlook 2007 service pack 3microsoft corpTracked
microsoft outlook 2010 service pack 2microsoft corpTracked
microsoft outlook 2013 rt service pack 1microsoft corpTracked
microsoft outlook 2013 service pack 1microsoft corpTracked
microsoft outlook 2016microsoft corpTracked
WindowsMicrosoftTracked
WindowsMicrosoftTracked
WindowsMicrosoftTracked
WindowsMicrosoftTracked
WindowsMicrosoftTracked
WindowsMicrosoftTracked
WindowsMicrosoftTracked
WindowsMicrosoftTracked
WindowsMicrosoftTracked
WindowsMicrosoftTracked
WindowsMicrosoftTracked
WindowsMicrosoftTracked
Showing first 20 of 27