Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
146377 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.814283
Categoría:Windows : Microsoft Bulletins
Título:Microsoft Office 365 (2016 Click-to-Run) Multiple Vulnerabilities (Nov 2018)
Resumen:This host is missing an important security; update according to Microsoft Office Click-to-Run updates.
Descripción:Summary:
This host is missing an important security
update according to Microsoft Office Click-to-Run updates.

Vulnerability Insight:
Multiple flaws exist due to:

- Multiple errors in Microsoft Excel because it fails to properly handle objects in memory.

- Multiple errors in Microsoft Outlook software when it fails to properly handle
objects in memory.

- An error in Microsoft Outlook which fails to respect 'Default link type'
settings configured via the SharePoint Online Admin Center.

- An error in Microsoft Outlook when attaching files to Outlook messages.

- An error in the way that Microsoft Outlook parses specially modified rule
export files.

- An error in Microsoft Project software when it fails to properly handle objects
in memory.

- An error in Microsoft Word software when it fails to properly handle objects
in memory.

- An error in Skype for Business in handling emojis.

Vulnerability Impact:
Successful exploitation will allow an attacker
to run arbitrary code in the context of the current user, conduct a denial-of-service
attack and gain access to sensitive information.

Affected Software/OS:
Microsoft Office 365 (2016 Click-to-Run).

Solution:
Upgrade to latest version of Microsoft Office
365 (2016 Click-to-Run) with respect to update channel used. Please see the references for more information.

CVSS Score:
9.3

CVSS Vector:
AV:N/AC:M/Au:N/C:C/I:C/A:C

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2018-8574
BugTraq ID: 105833
http://www.securityfocus.com/bid/105833
http://www.securitytracker.com/id/1042115
Common Vulnerability Exposure (CVE) ID: CVE-2018-8577
BugTraq ID: 105834
http://www.securityfocus.com/bid/105834
http://www.securitytracker.com/id/1042134
Common Vulnerability Exposure (CVE) ID: CVE-2018-8522
BugTraq ID: 105820
http://www.securityfocus.com/bid/105820
http://www.securitytracker.com/id/1042110
Common Vulnerability Exposure (CVE) ID: CVE-2018-8524
BugTraq ID: 105823
http://www.securityfocus.com/bid/105823
Common Vulnerability Exposure (CVE) ID: CVE-2018-8558
BugTraq ID: 105826
http://www.securityfocus.com/bid/105826
Common Vulnerability Exposure (CVE) ID: CVE-2018-8576
BugTraq ID: 105822
http://www.securityfocus.com/bid/105822
Common Vulnerability Exposure (CVE) ID: CVE-2018-8579
BugTraq ID: 105828
http://www.securityfocus.com/bid/105828
http://www.securitytracker.com/id/1042132
Common Vulnerability Exposure (CVE) ID: CVE-2018-8582
BugTraq ID: 105825
http://www.securityfocus.com/bid/105825
Common Vulnerability Exposure (CVE) ID: CVE-2018-8575
BugTraq ID: 105807
http://www.securityfocus.com/bid/105807
http://www.securitytracker.com/id/1042116
Common Vulnerability Exposure (CVE) ID: CVE-2018-8539
BugTraq ID: 105835
http://www.securityfocus.com/bid/105835
http://www.securitytracker.com/id/1042112
Common Vulnerability Exposure (CVE) ID: CVE-2018-8573
BugTraq ID: 105836
http://www.securityfocus.com/bid/105836
http://www.securitytracker.com/id/1042114
Common Vulnerability Exposure (CVE) ID: CVE-2018-8546
BugTraq ID: 105802
http://www.securityfocus.com/bid/105802
http://www.securitytracker.com/id/1042125
CopyrightCopyright (C) 2018 Greenbone AG

Esta es sólo una de 146377 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.