CVE-2018-0986
critical-risk
Published 2018-04-04
A remote code execution vulnerability exists when the Microsoft Malware Protection Engine does not properly scan a specially crafted file, leading to memory corruption, aka "Microsoft Malware Protection Engine Remote Code Execution Vulnerability." This affects Windows Defender, Windows Intune Endpoint Protection, Microsoft Security Essentials, Microsoft System Center Endpoint Protection, Microsoft Exchange Server, Microsoft System Center, Microsoft Forefront Endpoint Protection.
Do I need to act?
!
75.4% chance of exploitation in next 30 days
EPSS score — higher than 25% of all CVEs
-
Not on CISA KEV list
No confirmed active exploitation reported to CISA
!
1 public exploit available
?
Patch status unknown
Check vendor advisories for fix availability and mitigation guidance
8
CVSS 8.8/10
High
NETWORK
/ LOW complexity
Affected Products (9)
Affected Vendors
References (8)
Third Party Advisory
http://www.securityfocus.com/bid/103593
Third Party Advisory
http://www.securitytracker.com/id/1040631
Third Party Advisory
http://www.securityfocus.com/bid/103593
Third Party Advisory
http://www.securitytracker.com/id/1040631
72
/ 100
critical-risk
Severity
30/34 · Critical
Exploitability
27/34 · High
Exposure
15/34 · Moderate