CVE-2018-0796: Critical severity microsoft office excel vulnerability
Published Jan 10, 2018
·Updated
Microsoft Excel in Microsoft Office 2007, Microsoft Office 2010, Microsoft Office 2013, and Microsoft Office 2016 allows a remote code execution vulnerability due to the way objects are handled in memory, aka "Microsoft Excel Remote Code Execution Vulnerability".
Affected Software
8 affected components
Microsoft Excel=2007-sp3
Microsoft Excel=2010-sp2
Microsoft Excel=2013-sp1
Microsoft Excel=2013-sp1
Microsoft Excel=2016
Microsoft Excel Viewer
Microsoft Office=2016
Microsoft Office Compatibility Pack=sp3
Remediation
Event History
Jan 10, 2018
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2018-0796?
CVE-2018-0796 is a remote code execution vulnerability in Microsoft Excel.
2
Which versions of Microsoft Excel are affected by CVE-2018-0796?
Microsoft Excel 2007, 2010, 2013, and 2016 are affected by CVE-2018-0796.
3
What is the severity of CVE-2018-0796?
CVE-2018-0796 has a severity rating of 8.8 (Critical).
4
How does CVE-2018-0796 exploit the vulnerability?
CVE-2018-0796 exploits the vulnerability by manipulating objects in memory, leading to remote code execution.
5
Is there a fix for CVE-2018-0796?
Yes, Microsoft has released security updates to address the CVE-2018-0796 vulnerability. It is recommended to install the latest updates for Microsoft Excel.