Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
145615 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.814207
Categoría:Windows : Microsoft Bulletins
Título:Microsoft Office 2016 Click-to-Run (C2R) Multiple Vulnerabilities (Sep 2018)
Resumen:This host is missing an important security; update according to Microsoft Office Click-to-Run updates.
Descripción:Summary:
This host is missing an important security
update according to Microsoft Office Click-to-Run updates.

Vulnerability Insight:
Multiple flaws exist due to:

- An error in the way certain Excel functions handle objects in memory.

- An error in how Microsoft Word parses PDF files.

- An error in how the Windows font library handles embedded fonts.

Vulnerability Impact:
Successful exploitation will allow an attacker
to run arbitrary code in the context of the current user and gain access to
potentially sensitive information.

Affected Software/OS:
Microsoft Office 2016 Click-to-Run.

Solution:
Upgrade to latest version of Microsoft Office
2016 Click-to-Run with respect to update channel used. Please see the references for more information.

CVSS Score:
9.3

CVSS Vector:
AV:N/AC:M/Au:N/C:C/I:C/A:C

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2018-8429
BugTraq ID: 105219
http://www.securityfocus.com/bid/105219
http://www.securitytracker.com/id/1041630
Common Vulnerability Exposure (CVE) ID: CVE-2018-8430
BugTraq ID: 105212
http://www.securityfocus.com/bid/105212
http://www.securitytracker.com/id/1041638
Common Vulnerability Exposure (CVE) ID: CVE-2018-8331
BugTraq ID: 105206
http://www.securityfocus.com/bid/105206
Common Vulnerability Exposure (CVE) ID: CVE-2018-8332
BugTraq ID: 105248
http://www.securityfocus.com/bid/105248
http://www.securitytracker.com/id/1041628
CopyrightCopyright (C) 2018 Greenbone AG

Esta es sólo una de 145615 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.