HTTP: Microsoft Outlook CVE-2018-8587 Remote Code Execution

This signature detects an attempt to exploit an Out of Bound vulnerability in Microsoft Outlook. Successful exploitation could lead to remote code execution.

Extended Description

A remote code execution vulnerability exists in Microsoft Outlook software when it fails to properly handle objects in memory, aka "Microsoft Outlook Remote Code Execution Vulnerability." This affects Office 365 ProPlus, Microsoft Office, Microsoft Outlook.

Affected Products

Microsoft office_365_proplus

References

BugTraq: 106097

CVE: CVE-2018-8587

Short Name
HTTP:STC:OUTLOOK:CVE2018-8587CE
Severity
Major
Recommended
True
Recommended Action
Drop
Category
HTTP
Keywords
CVE-2018-8587 Code Execution Microsoft Outlook Remote bid:106097
Release Date
12/13/2018
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3590
False Positive
Unknown
Vendors

Microsoft

CVSS Score

9.3

Found a potential security threat?