First published: Thu May 21 2020(Updated: )
A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'.
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft 365 Apps for enterprise | ||
Microsoft Office | =2010-sp2 | |
Microsoft Office | =2013-sp1 | |
Microsoft Office | =2013-sp1 | |
Microsoft Office | =2016 | |
Microsoft Office for Mac OS X | =2016 | |
Microsoft Office | =2019 | |
Microsoft Office | =2019 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-0901 has a critical severity rating due to its potential for remote code execution.
To fix CVE-2020-0901, ensure that you install the latest updates and patches provided by Microsoft for affected versions of Excel.
CVE-2020-0901 affects Microsoft Excel 2010, 2013, 2016, 2019, Microsoft 365 apps, and their respective Mac versions.
CVE-2020-0901 is a remote code execution vulnerability that arises from improper handling of objects in memory.
Yes, exploitation of CVE-2020-0901 can potentially allow attackers to execute arbitrary code and gain unauthorized access to sensitive data.