HTTP: Microsoft Office Excel Parsed Expression CVE-2018-8246 Information Disclosure

This signature detects attempts to exploit a known vulnerability Microsoft Office Excel. The vulnerability is due to the inclusion of uninitialized memory when processing of parsed expressions in FORMULA records in Excel workbooks. A remote attacker could exploit this vulnerability by enticing an user to open a maliciously crafted Excel file. Successful exploitation would allow the attacker to disclose sensitive information that may help in further attacks.

Extended Description

An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka "Microsoft Excel Information Disclosure Vulnerability." This affects Microsoft Excel Viewer, Microsoft Office, Microsoft Excel.

Affected Products

Microsoft excel_viewer

References

CVE: CVE-2018-8246

Short Name
HTTP:STC:DL:MS-CVE-2018-8246-ID
Severity
Minor
Recommended
True
Recommended Action
Drop
Category
HTTP
Keywords
CVE-2018-8246 Disclosure Excel Expression Information Microsoft Office Parsed
Release Date
10/01/2018
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3590
False Positive
Unknown
Vendors

Microsoft

CVSS Score

4.3

Found a potential security threat?