First published: Tue Feb 11 2020(Updated: )
A spoofing vulnerability exists when Office Online Server does not validate origin in cross-origin communications correctly, aka 'Microsoft Office Online Server Spoofing Vulnerability'.
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Office Online Server |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-0695 has a severity rating of important, indicating it can allow spoofing attacks if exploited.
To fix CVE-2020-0695, apply the latest security update for Microsoft Office Online Server.
CVE-2020-0695 can be exploited in spoofing attacks, allowing an attacker to impersonate a legitimate user.
Microsoft Office Online Server is the affected software for CVE-2020-0695.
Yes, users must install the available security updates to mitigate the risks associated with CVE-2020-0695.