PT-2018-1027 · Microsoft · Office+2

·

CVE-2018-0798

·

Published

2018-01-09

·

Updated

2026-08-24

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Microsoft Office 2007 Microsoft Office 2010 Microsoft Office 2013 Microsoft Office 2016 Microsoft Office Compatibility Pack (affected versions not specified) Microsoft WordPad (affected versions not specified)
Description A remote code execution issue exists in the Equation Editor of Microsoft Office and WordPad due to improper memory object handling, leading to a buffer overflow. An attacker can exploit this by inducing a user to open a specially crafted file, allowing the execution of arbitrary code within the context of the current user. If the user possesses administrative privileges, the attacker could gain full control of the system, enabling them to install software, modify or delete data, and create new accounts with full user rights. This issue has been exploited by multiple Chinese threat groups since late 2018.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

DoS

RCE

Memory Corruption

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2018-00248
CVE-2018-0798

Affected Products

Office
Wordpad
Office Word