Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.812623
Category:Windows : Microsoft Bulletins
Title:Microsoft Word 2016 Multiple Remote Code Execution Vulnerabilities (KB4011643)
Summary:This host is missing a critical security; update according to Microsoft KB4011643
Description:Summary:
This host is missing a critical security
update according to Microsoft KB4011643

Vulnerability Insight:
Multiple flaws exist due to:

- An error in the way that Microsoft Outlook parses specially crafted email
messages.

- Multiple errors in Microsoft Office because it fails to properly handle objects in memory.

- An error in Microsoft Office software when the Office software fails to
properly handle RTF files.

Vulnerability Impact:
Successful exploitation will allow an attacker
to run arbitrary code in the context of the current user.

Affected Software/OS:
Microsoft Word 2016.

Solution:
The vendor has released updates. Please see the references for more information.

CVSS Score:
9.3

CVSS Vector:
AV:N/AC:M/Au:N/C:C/I:C/A:C

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2018-0792
BugTraq ID: 102381
http://www.securityfocus.com/bid/102381
http://www.securitytracker.com/id/1040153
Common Vulnerability Exposure (CVE) ID: CVE-2018-0793
BugTraq ID: 102375
http://www.securityfocus.com/bid/102375
http://www.securitytracker.com/id/1040154
Common Vulnerability Exposure (CVE) ID: CVE-2018-0794
BugTraq ID: 102373
http://www.securityfocus.com/bid/102373
Common Vulnerability Exposure (CVE) ID: CVE-2018-0797
BugTraq ID: 102406
http://www.securityfocus.com/bid/102406
Common Vulnerability Exposure (CVE) ID: CVE-2018-0798
BugTraq ID: 102370
http://www.securityfocus.com/bid/102370
https://0patch.blogspot.com/2018/01/bringing-abandoned-equation-editor-back.html
Common Vulnerability Exposure (CVE) ID: CVE-2018-0801
BugTraq ID: 102348
http://www.securityfocus.com/bid/102348
Common Vulnerability Exposure (CVE) ID: CVE-2018-0802
BugTraq ID: 102347
http://www.securityfocus.com/bid/102347
https://0patch.blogspot.com/2018/01/the-bug-that-killed-equation-editor-how.html
https://github.com/rxwx/CVE-2018-0802
https://github.com/zldww2011/CVE-2018-0802_POC
https://research.checkpoint.com/another-office-equation-rce-vulnerability/
Common Vulnerability Exposure (CVE) ID: CVE-2018-0804
BugTraq ID: 102457
http://www.securityfocus.com/bid/102457
Common Vulnerability Exposure (CVE) ID: CVE-2018-0805
BugTraq ID: 102459
http://www.securityfocus.com/bid/102459
Common Vulnerability Exposure (CVE) ID: CVE-2018-0806
BugTraq ID: 102460
http://www.securityfocus.com/bid/102460
Common Vulnerability Exposure (CVE) ID: CVE-2018-0807
BugTraq ID: 102461
http://www.securityfocus.com/bid/102461
Common Vulnerability Exposure (CVE) ID: CVE-2018-0812
BugTraq ID: 102463
http://www.securityfocus.com/bid/102463
Common Vulnerability Exposure (CVE) ID: CVE-2018-0845
BugTraq ID: 102746
http://www.securityfocus.com/bid/102746
Common Vulnerability Exposure (CVE) ID: CVE-2018-0848
BugTraq ID: 102747
http://www.securityfocus.com/bid/102747
Common Vulnerability Exposure (CVE) ID: CVE-2018-0849
BugTraq ID: 102748
http://www.securityfocus.com/bid/102748
Common Vulnerability Exposure (CVE) ID: CVE-2018-0862
BugTraq ID: 102749
http://www.securityfocus.com/bid/102749
CopyrightCopyright (C) 2018 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.