First published: Thu Mar 12 2020(Updated: )
A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory, aka 'Microsoft Word Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0850, CVE-2020-0851, CVE-2020-0855, CVE-2020-0892.
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Office for Mac OS X | =2016 | |
Microsoft Office | =2019 | |
Microsoft Office Online Server | =1.0 | |
Microsoft SharePoint Server 2010 | =2019 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-0852 has a critical severity rating, indicating a high risk of remote code execution.
To fix CVE-2020-0852, apply the latest security updates provided by Microsoft for affected Office products.
CVE-2020-0852 affects Microsoft Office 2016, Office 2019, Office Online Server, and SharePoint Server 2019.
CVE-2020-0852 is a remote code execution vulnerability that occurs when Microsoft Word incorrectly handles objects in memory.
Yes, CVE-2020-0852 can be exploited remotely, allowing attackers to execute arbitrary code on the affected system.