First published: Wed Aug 14 2019(Updated: )
An elevation of privilege vulnerability exists when Microsoft Outlook initiates processing of incoming messages without sufficient validation of the formatting of the messages, aka 'Microsoft Outlook Elevation of Privilege Vulnerability'.
Credit: secure@microsoft.com secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Office | =2019 | |
Microsoft Office 365 Proplus | ||
Microsoft Outlook | =2010-sp2 | |
Microsoft Outlook | =2013-sp1 | |
Microsoft Outlook | =2013-sp1 | |
Microsoft Outlook | =2016 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-1204 is an elevation of privilege vulnerability in Microsoft Outlook.
CVE-2019-1204 has a severity rating of 4.3, which is considered medium.
Microsoft Office 2019, Microsoft Office 365 ProPlus, Microsoft Outlook 2010 SP2, Microsoft Outlook 2013 SP1, Microsoft Outlook 2016 are affected by CVE-2019-1204.
CVE-2019-1204 is associated with CWE-20, which is an improper input validation vulnerability.
To fix CVE-2019-1204, Microsoft has released security updates. Update your affected software to the latest version provided by Microsoft.