First published: Tue Jun 09 2020(Updated: )
An information disclosure vulnerability exists when Microsoft Project reads out of bound memory due to an uninitialized variable, aka 'Microsoft Project Information Disclosure Vulnerability'.
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft 365 Apps | ||
Microsoft Office | =2019 | |
Microsoft Project | =2010-sp2 | |
Microsoft Project | =2013-sp1 | |
Microsoft Project | =2016 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-1322 refers to an information disclosure vulnerability in Microsoft Project.
CVE-2020-1322 has a severity rating of 6.5 out of 10, which is considered medium.
CVE-2020-1322 affects Microsoft Office LTSC for Mac 2021, Microsoft Office 2019, and various versions of Microsoft Project.
To mitigate CVE-2020-1322, it is recommended to apply the latest security updates provided by Microsoft.
You can find more information about CVE-2020-1322 on the Microsoft Security Guidance Advisory page: https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1322