First published: Tue Jun 09 2020(Updated: )
A security feature bypass vulnerability exists in Microsoft Outlook when Office fails to enforce security settings configured on a system, aka 'Microsoft Outlook Security Feature Bypass Vulnerability'.
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft 365 Apps for enterprise | ||
Microsoft Office | =2010-sp2 | |
Microsoft Office | =2013-sp1 | |
Microsoft Office | =2013-sp1 | |
Microsoft Office | =2016 | |
Microsoft Office for Mac OS X | =2016 | |
Microsoft Office | =2019 | |
Microsoft Office for Mac OS X | =2019 | |
Microsoft Office Word | =2010-sp2 | |
Microsoft Office Word | =2013-sp1 | |
Microsoft Office Word | =2013-sp1 | |
Microsoft Office Word | =2016 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-1229 is a security feature bypass vulnerability in Microsoft Outlook.
The severity of CVE-2020-1229 is medium with a CVSS score of 4.3.
Microsoft Office LTSC for Mac 2021, Microsoft Office 2010 SP2, Microsoft Office 2013 SP1, Microsoft Office 2016, Microsoft Office 2019, Microsoft Word 2010 SP2, Microsoft Word 2013 SP1, and Microsoft Word 2016 are affected by CVE-2020-1229.
CVE-2020-1229 allows an attacker to bypass security settings configured on a system in Microsoft Outlook.
Yes, Microsoft has released a security update to address the CVE-2020-1229 vulnerability.