CVE-2018-8172: High severity Microsoft Expression Blend vulnerability
A remote code execution vulnerability exists in Visual Studio software when the software does not check the source markup of a file for an unbuilt project, aka "Visual Studio Remote Code Execution Vulnerability." This affects Microsoft Visual Studio, Expression Blend 4.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2018-8172?
CVE-2018-8172 is a remote code execution vulnerability in Visual Studio software.
What is the severity of CVE-2018-8172?
CVE-2018-8172 has a severity score of 7.8, which is considered critical.
Which software is affected by CVE-2018-8172?
Microsoft Visual Studio and Microsoft Expression Blend 2, 3, and 4 are affected by CVE-2018-8172.
How can I fix CVE-2018-8172?
To fix CVE-2018-8172, you should apply the necessary security updates provided by Microsoft.
Where can I find more information about CVE-2018-8172?
You can find more information about CVE-2018-8172 on the following websites: [1] http://www.securityfocus.com/bid/104616 [2] http://www.securitytracker.com/id/1041253 [3] https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8172