CVE-2018-8173: Microsoft Infopath

High severity, CVSS 7.8. EPSS: 19.9% chance of exploitation in the next 30 days.

A remote code execution vulnerability exists in Microsoft InfoPath when the software fails to properly handle objects in memory, aka "Microsoft InfoPath Remote Code Execution Vulnerability." This affects Microsoft Infopath.

Affected products

Published 2018-05-09. Last modified 2026-06-17.