peter bassill · operator
$ cve CVE-2018-0986 JSON

CVE-2018-0986 EXPLOIT

8.8
HIGH · CVSS 3.1 · EPSS 63.3% (pctl 99)

Patch early

A public exploit exists.

Description

A remote code execution vulnerability exists when the Microsoft Malware Protection Engine does not properly scan a specially crafted file, leading to memory corruption, aka "Microsoft Malware Protection Engine Remote Code Execution Vulnerability." This affects Windows Defender, Windows Intune Endpoint Protection, Microsoft Security Essentials, Microsoft System Center Endpoint Protection, Microsoft Exchange Server, Microsoft System Center, Microsoft Forefront Endpoint Protection.

Scoring

CVSS8.8 (HIGH, v3.1)
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS63.27% — more likely to be exploited than 99% of all CVEs
WeaknessCWE-787
On CISA KEVno
Public exploityes
Published2018-04-04
Last modified2026-06-17

Affected (13)

VendorProduct
microsoftexchange server
microsoftforefront endpoint protection 2010
microsoftintune endpoint protection
microsoftsecurity essentials
microsoftsystem center endpoint protection
microsoftwindows 10
microsoftwindows 7
microsoftwindows 8.1
microsoftwindows defender
microsoftwindows rt 8.1
microsoftwindows server 2008
microsoftwindows server 2012
microsoftwindows server 2016

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD