First published: Tue Jan 08 2019(Updated: )
An information disclosure vulnerability exists when Microsoft Word macro buttons are used improperly, aka "Microsoft Word Information Disclosure Vulnerability." This affects Microsoft Word, Office 365 ProPlus, Microsoft Office, Word.
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Office | =2010-sp2 | |
Microsoft Office | =2016 | |
Microsoft Office | =2019 | |
Microsoft Office | =2019 | |
Microsoft Office 365 Proplus | ||
Microsoft Office Web Apps Server | =2010-sp2 | |
Microsoft SharePoint Server | =2010-sp2 | |
Microsoft Word | =2010-sp2 | |
Microsoft Word | =2013-sp1 | |
Microsoft Word | =2013-sp1 | |
Microsoft Word | =2016 | |
Microsoft Word Automation Services |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-0561 is an information disclosure vulnerability in Microsoft Word macro buttons.
Microsoft Word, Office 365 ProPlus, Microsoft Office, and Word Automation Services are affected.
The severity of CVE-2019-0561 is medium, with a severity value of 5.5.
To fix CVE-2019-0561, apply the latest security updates provided by Microsoft.
You can find more information about CVE-2019-0561 at the following references: [http://www.securityfocus.com/bid/106399](http://www.securityfocus.com/bid/106399) and [https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-0561](https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-0561)