CVE-2008-3018
CVSS Score Not Available
50.10%
MEDIUM RiskEPSS (98th percentile)
Microsoft Office 2000 SP3, XP SP3, and 2003 SP2; Office Converter Pack; and Works 8 do not properly parse the length of a PICT file, which allows remote attackers to execute arbitrary code via a crafted PICT file, aka the "Malformed PICT Filter Vulnerability," a different vulnerability than CVE-2008-3021.
Published: 8/12/2008
Modified: 4/9/2025
Vulnerability Summary
EPSS Score (Exploitation Probability)
50.10%MEDIUM Exploitation Risk
98th percentile
This vulnerability has a 50.10% probability of being exploited in the next 30 days, ranking higher than 98% of all scored CVEs.