First published: Thu Sep 13 2018(Updated: )
A remote code execution vulnerability exists in Microsoft Word if a user opens a specially crafted PDF file, aka "Word PDF Remote Code Execution Vulnerability." This affects Microsoft Word, Microsoft Office.
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Office | =2013-sp1 | |
Microsoft Office | =2013-sp1 | |
Microsoft Office | =2016 | |
Microsoft Word | =2016 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-8430 is a remote code execution vulnerability in Microsoft Word that occurs when a user opens a specially crafted PDF file.
CVE-2018-8430 affects Microsoft Word by allowing remote code execution if a user opens a malicious PDF file.
CVE-2018-8430 has a severity rating of 7.8 out of 10, which is considered critical.
Microsoft Office 2013 SP1, Microsoft Office 2016 (Click-to-Run edition), and Microsoft Word 2016 are affected by CVE-2018-8430.
To mitigate the risk of CVE-2018-8430, it is recommended to apply the necessary security updates provided by Microsoft.