CVE-2020-0884: Medium severity visual studio professional 2017 vulnerability
Published Mar 12, 2020
·Updated
A spoofing vulnerability exists in Microsoft Visual Studio as it includes a reply URL that is not secured by SSL, aka 'Microsoft Visual Studio Spoofing Vulnerability'.
Affected Software
2 affected components
Microsoft Visual Studio 2017>=15.1<=15.8
Microsoft Visual Studio 2019>=16.0<=16.3
Remediation
Event History
Mar 12, 2020
CVE Published
via MITRE·03:48 PM
Data Sourced
via MITRE·03:48 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2020-0884?
CVE-2020-0884 is rated as important due to its ability to allow spoofing attacks.
2
How do I fix CVE-2020-0884?
To remediate CVE-2020-0884, update Microsoft Visual Studio to the latest version that addresses this vulnerability.
3
Which versions of Microsoft Visual Studio are affected by CVE-2020-0884?
CVE-2020-0884 affects Microsoft Visual Studio 2017 versions up to 15.8 and Microsoft Visual Studio 2019 versions up to 16.3.
4
What type of vulnerability is CVE-2020-0884?
CVE-2020-0884 is a spoofing vulnerability due to the inclusion of an unsecured reply URL.
5
What are the potential impacts of CVE-2020-0884?
The potential impact of CVE-2020-0884 includes exposure to phishing attacks, leading to unauthorized access to sensitive information.