Skip to content
Appaloosa Scout
Language selector
fr en

Vulnerability · NVD

CVE-2018-8627

CVE-2018-8627, medium severity (CVSS 5.5): 3 tracked apps concerned, all fixed or indeterminable on their current version.

Severity (CVSS)
5.5

NVD scale

Exploitation
8.6 %

EPSS, predicted over 30 days

Tracked apps
3
Still exposed
0

An information disclosure vulnerability exists when Microsoft Excel software reads out of bound memory due to an uninitialized variable, which could disclose the contents of memory, aka "Microsoft Excel Information Disclosure Vulnerability." This affects Microsoft Office, Office 365 ProPlus, Microsoft Excel, Microsoft Excel Viewer, Excel. This CVE ID is unique from CVE-2018-8598.

Attack vector : Local No privileges required
Show raw CVSS vector
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
EPSS 8.62% above median percentile 94.7%

Tracked apps referencing this CVE

For each app: the affected range, the fixing version, and where the tracked app stands today.

NVD references 6 distinct products for this CVE : only those tracked by Scout (mobile and desktop catalog apps) are listed above. Libraries, servers and out-of-scope products do not appear here. Full list on NVD ↗

Vulnerable CPE configurations (14)
Vendor Product Versions
microsoft excel
All platforms (wildcard)
-
microsoft excel
All platforms (wildcard)
-
microsoft excel
All platforms (wildcard)
-
microsoft excel
All platforms (wildcard)
-
microsoft excel
All platforms (wildcard)
-
microsoft excel
All platforms (wildcard)
-
microsoft excel
All platforms (wildcard)
-
microsoft excel
All platforms (wildcard)
-
microsoft office
All platforms (wildcard)
-
microsoft office
All platforms (wildcard)
-
microsoft office
macOS
-
microsoft office
All platforms (wildcard)
-
microsoft office
All platforms (wildcard)
-
microsoft office
macOS
-
View on NVD ↗ Advisory · portal.msrc.microsoft.com