HTTP: Microsoft Office Excel Parsed Expression CVE-2018-8246 Information Disclosure
This signature detects attempts to exploit a known vulnerability Microsoft Office Excel. The vulnerability is due to the inclusion of uninitialized memory when processing of parsed expressions in FORMULA records in Excel workbooks. A remote attacker could exploit this vulnerability by enticing an user to open a maliciously crafted Excel file. Successful exploitation would allow the attacker to disclose sensitive information that may help in further attacks.
Extended Description
An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka "Microsoft Excel Information Disclosure Vulnerability." This affects Microsoft Excel Viewer, Microsoft Office, Microsoft Excel.
Affected Products
Microsoft excel_viewer
References
CVE: CVE-2018-8246
srx-branch-12.3
srx-19.3
srx-branch-19.3
vsrx3bsd-19.2
srx-branch-19.4
vsrx-19.4
mx-12.3
mx-19.4
vmx-19.4
mx-19.3
vsrx3bsd-19.4
srx-19.4
vsrx-12.3
vmx-19.3
vsrx-19.2
srx-12.3
Microsoft
4.3