CVE-2018-8172
A remote code execution vulnerability exists in Visual Studio software when the software does not check the source markup of a file for an unbuilt project, aka “Visual Studio Remote Code Execution Vulnerability.” This affects Microsoft Visual Studio, Expression Blend 4.
Summary:
A remote code execution vulnerability exists in Visual Studio software when the software does not check the source markup of a file for an unbuilt project, aka “Visual Studio Remote Code Execution Vulnerability.” This affects Microsoft Visual Studio, Expression Blend 4.
Reference Links(if available):
CVSS Score (if available)
v2: / HIGHAV:N/AC:M/Au:N/C:C/I:C/A:C
v3: / HIGHCVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H