Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 145615 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.813431
Kategorie:Windows : Microsoft Bulletins
Titel:Microsoft Office 2016 Click-to-Run (C2R) Multiple Vulnerabilities (Jun 2018)
Zusammenfassung:This host is missing an important security; update according to Microsoft Office Click-to-Run updates.
Beschreibung:Summary:
This host is missing an important security
update according to Microsoft Office Click-to-Run updates.

Vulnerability Insight:
Multiple flaws exist due to:

- Multiple errors in Microsoft Excel because it fails to properly handle objects in memory.

- An error in Microsoft Excel which improperly discloses the contents of its
memory.

- An error in the Microsoft Outlook when Microsoft Outlook does not validate
attachment headers properly

Vulnerability Impact:
Successful exploitation will allow an attacker
to run arbitrary code in the context of the current user, gain access to
potentially sensitive information and gain elevated privileges.

Affected Software/OS:
Microsoft Office 2016 Click-to-Run.

Solution:
Upgrade to latest version of Microsoft Office
2016 Click-to-Run with respect to update channel used. Please see the references for more information.

CVSS Score:
9.3

CVSS Vector:
AV:N/AC:M/Au:N/C:C/I:C/A:C

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2018-8246
BugTraq ID: 104322
http://www.securityfocus.com/bid/104322
http://www.securitytracker.com/id/1041109
Common Vulnerability Exposure (CVE) ID: CVE-2018-8248
BugTraq ID: 104318
http://www.securityfocus.com/bid/104318
Common Vulnerability Exposure (CVE) ID: CVE-2018-8244
BugTraq ID: 104323
http://www.securityfocus.com/bid/104323
http://www.securitytracker.com/id/1041107
CopyrightCopyright (C) 2018 Greenbone AG

Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.