CVE-2018-0903
published 2018-03-14CVE-2018-0903: Microsoft Access 2010 SP2, Microsoft Access 2013 SP1, Microsoft Access 2016, and Microsoft Office 2016 Click-to-Run allow a remote code execution vulnerability…
high7.8CVSS 3.0
AVLACLPRNUIRSUCHIHAH
Microsoft Access 2010 SP2, Microsoft Access 2013 SP1, Microsoft Access 2016, and Microsoft Office 2016 Click-to-Run allow a remote code execution vulnerability due to how objects are handled in memory, aka "Microsoft Access Remote Code Execution Vulnerability".
Affected
10 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| microsoft | access | — | — |
| microsoft | access | — | — |
| microsoft | access | — | — |
| microsoft | office | — | — |
| microsoft_corporation | microsoft_access | — | — |
| msrc | microsoft_access_2010_service_pack_2 | — | — |
| msrc | microsoft_access_2013_service_pack_1 | — | — |
| msrc | microsoft_access_2016 | — | — |
| msrc | microsoft_office_2016_click-to-run_for_32-bit_editions | — | — |
| msrc | microsoft_office_2016_click-to-run_for_64-bit_editions | — | — |