PT-2018-18545 · Microsoft · Windows Server 2016+11
Eduardo Braun Prado
·
Published
2018-07-10
·
Updated
2019-10-03
·
CVE-2018-8307
CVSS v2.0
6.8
Medium
| Vector | AV:N/AC:M/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Windows 7
Windows Server 2012 R2
Windows RT 8.1
Windows Server 2008
Windows Server 2012
Windows 8.1
Windows Server 2016
Windows Server 2008 R2
Windows 10
Windows 10 Servers
Description
A security feature bypass issue exists due to improper handling of embedded OLE objects by Microsoft WordPad. This allows attackers to affect the system.
Recommendations
For Windows 7, consider applying the recommended security updates.
For Windows Server 2012 R2, apply the latest security patches.
For Windows RT 8.1, install the available security fix.
For Windows Server 2008, update with the latest security release.
For Windows Server 2012, apply the recommended security update.
For Windows 8.1, install the latest security patch.
For Windows Server 2016, apply the available security fix.
For Windows Server 2008 R2, update with the latest security release.
For Windows 10, install the recommended security update.
For Windows 10 Servers, apply the latest security patch.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Wordpad
Windows
Windows 10
Windows 10 Servers
Windows 7
Windows 8.1
Windows Rt 8.1
Windows Server 2008
Windows Server 2008 R2
Windows Server 2012
Windows Server 2012 R2
Windows Server 2016