CVE-2018-0853: Medium severity microsoft office vulnerability
Microsoft Office 2010 SP2, Microsoft Office 2013 SP1 and RT SP1, Microsoft Office 2016, and Microsoft Office 2016 Click-to-Run (C2R) allow an information disclosure vulnerability, due to how Office initializes the affected variable, aka "Microsoft Office Information Disclosure Vulnerability".
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2018-0853?
CVE-2018-0853 is classified as an information disclosure vulnerability that could potentially expose sensitive information.
What versions of Microsoft Office are affected by CVE-2018-0853?
CVE-2018-0853 affects Microsoft Office 2010 SP2, Office 2013 SP1, Office 2016, and Office 2016 Click-to-Run.
How do I fix CVE-2018-0853?
To fix CVE-2018-0853, users should install the latest security updates provided by Microsoft.
What type of vulnerability is CVE-2018-0853?
CVE-2018-0853 is categorized as an information disclosure vulnerability affecting Microsoft Office.
Can CVE-2018-0853 be exploited remotely?
CVE-2018-0853 requires local access to exploit, as it does not allow for remote code execution.