CVE-2019-1448: Critical severity microsoft office excel vulnerability
Published Nov 12, 2019
·Updated
A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'.
Affected Software
8 affected components
Microsoft Excel=2010-sp2
Microsoft Excel=2013-sp1
Microsoft Excel=2013-sp1
Microsoft Excel=2016
Microsoft Office Mac Os=2016
Microsoft Office=2019
Microsoft Office Macos=2019
Microsoft Office 365 ProPlus
Remediation
Event History
Nov 12, 2019
CVE Published
via MITRE·06:53 PM
Data Sourced
via MITRE·06:53 PM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2019-1448?
CVE-2019-1448 is a remote code execution vulnerability in Microsoft Excel software.
2
How does CVE-2019-1448 impact Microsoft Excel?
CVE-2019-1448 allows an attacker to execute code remotely on a vulnerable Microsoft Excel software.
3
Which versions of Microsoft Excel are affected by CVE-2019-1448?
Microsoft Excel 2010 SP2, Microsoft Excel 2013 SP1, Microsoft Excel 2016, Microsoft Office 2016, Microsoft Office 2019, and Microsoft Office 365 Proplus are affected by CVE-2019-1448.
4
What is the severity of CVE-2019-1448?
CVE-2019-1448 has a severity rating of 7.8 (Critical).
5
How can I fix CVE-2019-1448?
To fix CVE-2019-1448, apply the security patch provided by Microsoft.