Vulnerability Description
A tampering vulnerability exists when Microsoft Outlook does not properly handle specific attachment types when rendering HTML emails, aka "Microsoft Office Tampering Vulnerability." This affects Microsoft Word, Microsoft Office.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Microsoft | Office | 2010 |
| Microsoft | Word | 2010 |
References
- http://www.securityfocus.com/bid/104615Third Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1041274Third Party AdvisoryVDB Entry
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8310PatchVendor Advisory
- http://www.securityfocus.com/bid/104615Third Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1041274Third Party AdvisoryVDB Entry
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8310PatchVendor Advisory
FAQ
What is CVE-2018-8310?
CVE-2018-8310 is a vulnerability with a CVSS score of 7.5 (HIGH). A tampering vulnerability exists when Microsoft Outlook does not properly handle specific attachment types when rendering HTML emails, aka "Microsoft Office Tampering Vulnerability." This affects Micr...
How severe is CVE-2018-8310?
CVE-2018-8310 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2018-8310?
Check the references section above for vendor advisories and patch information. Affected products include: Microsoft Office, Microsoft Word.