CVE-2018-8569
HIGHYammer Desktop App - Remote Code Execution via Arbitrary Content Loading
Title source: llmDescription
A remote code execution vulnerability exists in the Yammer desktop application due to the loading of arbitrary content, aka "Yammer Desktop Application Remote Code Execution Vulnerability." This affects Yammer Desktop App.
References (2)
Core 2
Core References
Patch, Vendor Advisory x_refsource_confirm
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8569
Third Party Advisory, VDB Entry vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/105681
Scores
CVSS v3
7.8
EPSS
0.1333
EPSS Percentile
96.0%
Attack Vector
LOCAL
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Details
Status
published
Products (1)
microsoft/yammer
Published
Oct 23, 2018
Tracked Since
Feb 18, 2026