CVE-2018-0793: Critical severity Microsoft Office vulnerability
Published Jan 10, 2018
·Updated
Microsoft Outlook 2007, Microsoft Outlook 2010 and Microsoft Outlook 2013 allow a remote code execution vulnerability due to the way email messages are parsed, aka "Microsoft Outlook Remote Code Execution Vulnerability". This CVE is unique from CVE-2018-0791.
Affected Software
9 affected components
Microsoft Office=2010-sp2
Microsoft Office Mac Os X=2016
Microsoft Office=2016-c2r
Microsoft Office Compatibility Pack=sp3
Microsoft Word=2007-sp3
Microsoft Word=2010-sp2
Microsoft Word=2013-sp1
Microsoft Word=2013-sp1
Microsoft Word=2016
Remediation
Event History
Jan 10, 2018
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2018-0793?
CVE-2018-0793 is a remote code execution vulnerability in Microsoft Outlook 2007, 2010, and 2013.
2
How can this vulnerability be exploited?
This vulnerability can be exploited by sending a specially crafted email message to a user and convincing them to open it.
3
Which versions of Microsoft Outlook are affected by CVE-2018-0793?
Microsoft Outlook 2007, 2010, and 2013 are affected by this vulnerability.
4
What is the severity of CVE-2018-0793?
CVE-2018-0793 has a severity rating of 7.8 (Critical).
5
How can I protect myself from this vulnerability?
To protect yourself, ensure that you have installed the latest security updates and patches for Microsoft Outlook.