First published: Wed Dec 12 2018(Updated: )
A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka "Microsoft Excel Remote Code Execution Vulnerability." This affects Office 365 ProPlus, Microsoft Office, Microsoft Excel. This CVE ID is unique from CVE-2018-8636.
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Excel | =2010-sp2 | |
Microsoft Excel | =2013-sp1 | |
Microsoft Excel | =2013-sp1 | |
Microsoft Excel | =2016 | |
Microsoft Office | =2010-sp2 | |
Microsoft Office | =2016 | |
Microsoft Office | =2019 | |
Microsoft Office | =2019 | |
Microsoft Office 365 | ||
Microsoft Office Compatibility Pack | =sp3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-8597 is a remote code execution vulnerability in Microsoft Excel software.
CVE-2018-8597 affects Microsoft Excel by allowing remote code execution.
Microsoft Excel 2010 SP2, Microsoft Excel 2013 SP1, Microsoft Excel 2016, and Microsoft Office Compatibility Pack SP3 are affected by CVE-2018-8597.
CVE-2018-8597 has a severity rating of 7.8 (Critical).
To fix the CVE-2018-8597 vulnerability, apply the latest security updates and patches from Microsoft.