First published: Wed May 09 2018(Updated: )
An information disclosure vulnerability exists in Outlook when a message is opened, aka "Microsoft Outlook Information Disclosure Vulnerability." This affects Word, Microsoft Office.
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Office | =2010-sp2 | |
Microsoft Office Compatibility Pack | =sp3 | |
Microsoft SharePoint Server | =2010-sp2 | |
Microsoft Web Applications | =2010-sp2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-8160 is an information disclosure vulnerability in Microsoft Outlook when a message is opened.
The severity of CVE-2018-8160 is medium with a CVSS score of 6.5.
Microsoft Office 2010 SP2, Microsoft Office Compatibility Pack SP3, Microsoft SharePoint Server 2010 SP2, and Microsoft Web Applications 2010 SP2 are affected by CVE-2018-8160.
CVE-2018-8160 allows attackers to disclose information in Outlook when a message is opened.
Yes, you can refer to the following links for more information: http://www.securityfocus.com/bid/104051, http://www.securitytracker.com/id/1040852, https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8160.