Microsoft COM for Windows Remote Code Execution Vulnerability for Windows Server 2012 R2 for x64-based Systems (KB4343888)

Risk Information

Base Score
7.7
MODERATE
Vector
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:P/RL:O/RC:C
EPSS Score
Exploitation Probability
49.99%

CVE Information

Patch Details

Patch associated with this vulnerability is supported by ManageEngine.

Patch ID
25013

Patch Description
2018-08 Security Only Quality Update for Windows Server 2012 R2 for x64-based Systems (KB4343888)

References

https://msrc.microsoft.com/update-guide/vulnerability/ADV180018
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2018-8341
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2018-8343
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2018-8344
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2018-8345
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2018-8348
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2018-8349
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2018-8394
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2018-8398
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2018-8404
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2018-8405
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2018-8340
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2018-8339