CVE-2019-1231: Medium severity microsoft project vulnerability
Published Sep 11, 2019
·Updated
An information disclosure vulnerability exists in the way Rome SDK handles server SSL/TLS certificate validation, aka 'Rome SDK Information Disclosure Vulnerability'.
Affected Software
1 affected component
Microsoft Project Rome=1.4.1
Remediation
Event History
Sep 11, 2019
CVE Published
via MITRE·09:24 PM
Data Sourced
via MITRE·09:24 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2019-1231?
CVE-2019-1231 has a severity rating of Medium.
2
How do I fix CVE-2019-1231?
To fix CVE-2019-1231, update Microsoft Project Rome SDK to version 1.4.2 or later.
3
What impact does CVE-2019-1231 have on users?
CVE-2019-1231 may allow an attacker to intercept sensitive information due to improper SSL/TLS certificate validation.
4
Which software is affected by CVE-2019-1231?
Microsoft Project Rome SDK version 1.4.1 is affected by CVE-2019-1231.
5
Is CVE-2019-1231 related to SSL/TLS security?
Yes, CVE-2019-1231 involves information disclosure due to inadequate SSL/TLS certificate validation.