CyberSec.Space Logo
返回 CVE 瀏覽器

CVE-2018-0824

Known Exploited (CISA KEV)HIGH
8.8
CVSS Severity Score
EPSS Score50.8340%
EPSS Percentile86.41th
Published2018年5月9日
Last Modified2025年10月28日

Vulnerability Description

A remote code execution vulnerability exists in "Microsoft COM for Windows" when it fails to properly handle serialized objects, aka "Microsoft COM for Windows Remote Code Execution Vulnerability." This affects Windows 7, Windows Server 2012 R2, Windows RT 8.1, Windows Server 2008, Windows Server 2012, Windows 8.1, Windows Server 2016, Windows Server 2008 R2, Windows 10, Windows 10 Servers.

Affected Platforms (CPE)

💻
Microsoft

Windows 10 1507

All versions
💻
Microsoft

Windows 10 1607

All versions
💻
Microsoft

Windows 10 1703

All versions
💻
Microsoft

Windows 10 1709

All versions
💻
Microsoft

Windows 10 1803

All versions
💻
Microsoft

Windows 7

All versions
💻
Microsoft

Windows 8.1

All versions
💻
Microsoft

Windows Rt 8.1

All versions
💻
Microsoft

Windows Server 1709

All versions
💻
Microsoft

Windows Server 1803

All versions
💻
Microsoft

Windows Server 2008

All versions
💻
Microsoft

Windows Server 2008

= r2
💻
Microsoft

Windows Server 2008

= r2
💻
Microsoft

Windows Server 2012

All versions
💻
Microsoft

Windows Server 2012

= r2
💻
Microsoft

Windows Server 2016

All versions

References & Advisories

相關漏洞威脅