CVE-2018-8429

Severity
5.5MEDIUM
EPSS
20.4%
top 4.45%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 13
Latest updateMay 14

Description

An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka "Microsoft Excel Information Disclosure Vulnerability." This affects Microsoft Excel Viewer, Microsoft Office, Microsoft Excel.

CVSS vector

CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:NExploitability: 1.8 | Impact: 3.6

Affected Packages6 packages

CVEListV5microsoft/microsoft_excel_viewer2007 Service Pack 3
NVDmicrosoft/excel2010, 2013, 2016+2
CVEListV5microsoft/microsoft_excel7 versions+6

Patches

🔴Vulnerability Details

2
GHSA
GHSA-xqvw-jp2q-crr2: An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka "Microsoft Excel Information2022-05-14
CVEList
CVE-2018-8429: An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka "Microsoft Excel Information2018-09-13

📋Vendor Advisories

1
Microsoft
Microsoft Excel Information Disclosure Vulnerability2018-09-11
CVE-2018-8429 (MEDIUM CVSS 5.5) | An information disclosure vulnerabi | cvebase.io