First published: Wed Apr 15 2020(Updated: )
A remote code execution vulnerability exists when Microsoft Office improperly loads arbitrary type libraries, aka 'Microsoft Office Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0991.
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Access | =2010-sp2 | |
Microsoft Access | =2013-sp1 | |
Microsoft Access | =2016 | |
Microsoft Excel | =2010-sp2 | |
Microsoft Excel | =2013-sp1 | |
Microsoft Excel | =2016 | |
Microsoft Office | =2010-sp2 | |
Microsoft Office | =2013-sp1 | |
Microsoft Office | =2013-sp1 | |
Microsoft Office | =2016 | |
Microsoft Office | =2019 | |
Microsoft Office 365 Proplus | ||
Microsoft Outlook | =2010-sp2 | |
Microsoft Outlook | =2013-sp1 | |
Microsoft Outlook | =2013-sp1 | |
Microsoft Outlook | =2016 | |
Microsoft PowerPoint | =2010-sp2 | |
Microsoft PowerPoint | =2013-sp1 | |
Microsoft PowerPoint | =2013-sp1 | |
Microsoft PowerPoint | =2016 | |
Microsoft Project | =2010-sp2 | |
Microsoft Project | =2013-sp1 | |
Microsoft Project | =2016 | |
Microsoft Publisher | =2010-sp2 | |
Microsoft Publisher | =2013-sp1 | |
Microsoft Publisher | =2016 | |
Microsoft Visio | =2010-sp2 | |
Microsoft Visio | =2013-sp1 | |
Microsoft Visio | =2016 | |
Microsoft Word | =2010-sp2 | |
Microsoft Word | =2013-sp1 | |
Microsoft Word | =2013-sp1 | |
Microsoft Word | =2016 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-0760 is a remote code execution vulnerability in Microsoft Office that occurs when arbitrary type libraries are improperly loaded.
CVE-2020-0760 affects various versions of Microsoft Office, including Access, Excel, Outlook, PowerPoint, Project, Publisher, Visio, and Word.
CVE-2020-0760 has a severity level of 8.8, which is considered high.
To fix CVE-2020-0760, it is recommended to install the security updates provided by Microsoft.
You can find more information about CVE-2020-0760 on the Microsoft Security Guidance Advisory.