CVE-2018-8346: Microsoft Windows 7

High severity, CVSS 8.8. EPSS: 18.8% chance of exploitation in the next 30 days.

A remote code execution vulnerability exists in Microsoft Windows that could allow remote code execution if a .LNK file is processed, aka "LNK Remote Code Execution Vulnerability." This affects Windows Server 2008, Windows 7, Windows Server 2008 R2. This CVE ID is unique from CVE-2018-8345.

Affected products

  • Microsoft Windows 7: affected versions not specified
  • Microsoft Windows Server 2008: affected versions not specified; version r2 only

Published 2018-08-15. Last modified 2026-06-17.