CVE-2018-0903
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
14/03/2018
Last modified:
24/08/2020
Description
Microsoft Access 2010 SP2, Microsoft Access 2013 SP1, Microsoft Access 2016, and Microsoft Office 2016 Click-to-Run allow a remote code execution vulnerability due to how objects are handled in memory, aka "Microsoft Access Remote Code Execution Vulnerability".
Impact
Base Score 3.x
7.80
Severity 3.x
HIGH
Base Score 2.0
6.80
Severity 2.0
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:microsoft:access:2010:sp2:*:*:*:*:*:* | ||
| cpe:2.3:a:microsoft:access:2013:sp1:*:*:*:*:*:* | ||
| cpe:2.3:a:microsoft:access:2016:*:*:*:*:*:*:* | ||
| cpe:2.3:a:microsoft:office:2016:*:*:*:click-to-run:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



