Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

msrc логотип

CVE-2018-0819

Опубликовано: 09 янв. 2018
Источник: msrc
EPSS Низкий

Описание

Spoofing Vulnerability in Microsoft Office for MAC

A spoofing vulnerability exists when Microsoft Outlook for MAC does not properly handle the encoding and display of email addresses. This improper handling and display may cause antivirus or antispam scanning to not work as intended.

To exploit the vulnerability, an attacker could send a specially crafted email attachment to a user in an attempt to launch a social engineering attack, such as phishing.

The security update addresses the vulnerability by correcting how Outlook for MAC displays encoded email addresses.

Обновления

ПродуктСтатьяОбновление
Microsoft Office 2016 for Mac

Показывать по

Возможность эксплуатации

Publicly Disclosed

Yes

Exploited

No

Latest Software Release

Exploitation Less Likely

Older Software Release

Exploitation Less Likely

EPSS

Процентиль: 93%
0.09933
Низкий

Связанные уязвимости

CVSS3: 6.5
nvd
больше 7 лет назад

Microsoft Office 2016 for Mac allows an attacker to send a specially crafted email attachment to a user in an attempt to launch a social engineering attack, such as phishing, due to how Outlook for Mac displays encoded email addresses, aka "Spoofing Vulnerability in Microsoft Office for Mac."

CVSS3: 6.5
github
около 3 лет назад

Microsoft Office 2016 for Mac allows an attacker to send a specially crafted email attachment to a user in an attempt to launch a social engineering attack, such as phishing, due to how Outlook for Mac displays encoded email addresses, aka "Spoofing Vulnerability in Microsoft Office for Mac."

EPSS

Процентиль: 93%
0.09933
Низкий