PT-2020-4760 · Microsoft · 365 Apps For Enterprise+2

Published

2020-11-10

·

Updated

2023-12-31

·

CVE-2020-17064

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: Microsoft Excel (affected versions not specified) Microsoft Office (affected versions not specified) Microsoft 365 Apps for Enterprise (affected versions not specified)
Description: The issue is related to the improper handling of objects in memory by Microsoft Excel, which can be exploited to execute arbitrary code. This allows remote attackers to potentially gain control over the affected system.
Recommendations: For Microsoft Excel, consider applying security updates or patches as soon as they become available to fix the issue. For Microsoft Office, apply the latest security patches to resolve the vulnerability. For Microsoft 365 Apps for Enterprise, update to the latest version that includes the fix for the improper handling of objects in memory. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2020-05312
CVE-2020-17064

Affected Products

365 Apps For Enterprise
Office Excel
Office