← Back to browse · API

CVE-2018-0802

Severity
HIGH
CVSS
7.8
EPSS
0.87417
Risk score
86.8
CISA KEV
Yes
PoC
No
Published
2021-11-03
Modified
2021-11-03
First seen
2026-08-07
Aliases
EUVD-2018-1608, GHSA-X323-9HMM-GV8Q
Products
Microsoft Corporation:Equation Editor Microsoft Office 2007, Microsoft Office 2010, Microsoft Office 2013, and Microsoft Office 2016, Microsoft:Office
Sources
euvd EUVD-2018-1608
cisa.gov CVE-2018-0802

Description

Microsoft Office contains a memory corruption vulnerability due to the way objects are handled in memory. Successful exploitation allows for remote code execution in the context of the current user. This vulnerability is known to be chained with CVE-2018-0798.

References