First published: Tue Jan 14 2020(Updated: )
A spoofing vulnerability exists when Office Online does not validate origin in cross-origin communications correctly, aka 'Microsoft Office Online Spoofing Vulnerability'.
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Office Online Server |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-0647 has a severity rating of medium, indicating it requires attention but is not critical.
To fix CVE-2020-0647, ensure that you apply the latest security updates provided by Microsoft for Office Online Server.
CVE-2020-0647 affects Microsoft Office Online Server.
CVE-2020-0647 is a spoofing vulnerability related to improper validation of origin in cross-origin communications.
Yes, CVE-2020-0647 can potentially be exploited remotely through specially crafted requests.