Equation Editor in Microsoft Office 2007, Microsoft Office 2010, Microsoft Office 2013, and Microsoft Office 2016 allow a remote code execution vulnerability due to the way objects are handled in memory, aka "Microsoft Office Memory Corruption Vulnerability". This CVE is unique from CVE-2018-0797 and CVE-2018-0812.
Is CVE-2018-0802 exploited?
Listed in the CISA KEV catalog on 2021-11-03.
Federal remediation due 2022-05-03.
Past that date by 1565 days.
EPSS puts exploitation in the next 30 days at 87%.
Public exploit code: none found in monitored sources.