Skip to main content

CVE-2008-3018

CVSS Score Not Available
50.10%
MEDIUM RiskEPSS (98th percentile)

Microsoft Office 2000 SP3, XP SP3, and 2003 SP2; Office Converter Pack; and Works 8 do not properly parse the length of a PICT file, which allows remote attackers to execute arbitrary code via a crafted PICT file, aka the "Malformed PICT Filter Vulnerability," a different vulnerability than CVE-2008-3021.

Published: 8/12/2008
Modified: 4/9/2025
Back to CVE Lookup

Vulnerability Summary

EPSS Score (Exploitation Probability)

50.10%MEDIUM Exploitation Risk
98th percentile

This vulnerability has a 50.10% probability of being exploited in the next 30 days, ranking higher than 98% of all scored CVEs.