CVE-2018-0792

Description

Microsoft Word 2016 in Microsoft Office 2016 allows a remote code execution vulnerability due to the way objects are handled in memory, aka Microsoft Word Remote Code Execution Vulnerability. This CVE is unique from CVE-2018-0794.

Risk Information

Base Score
8.8
MODERATE
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
37.727

Associated Vulnerability

VulnerabilityOS Platform
Microsoft Office Memory Corruption Vulnerability for Microsoft Word 2016 (KB4011643) 64-Bit EditionWindows
Microsoft Office Memory Corruption Vulnerability for Microsoft Word 2016 (KB4011643) 32-Bit EditionWindows
Microsoft SharePoint Elevation of Privilege Vulnerability for Microsoft SharePoint Enterprise Server 2016 (KB4011642)Windows

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-23754Security Update for Microsoft SharePoint Enterprise Server 2016 (KB4011642)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234