CVE-2018-0824
Essential information
- Published
- 05/08/2024 02:00
- Modified
- 21/12/2025 06:14
- Author
- Cybersecurity and Infrastructure Security Agency
- Creator
- Cybersecurity and Infrastructure Security Agency
- CISA KEV
- Yes
- CWE
- —
- CVSS vector
- — — —
Description
Microsoft COM for Windows contains a deserialization of untrusted data vulnerability that allows for privilege escalation and remote code execution via a specially crafted file or script.
NVD status
- NVD
- View on NVD