CVE-2020-1458: Critical severity microsoft 365 apps for enterprise vulnerability
Published Jul 14, 2020
·Updated
A remote code execution vulnerability exists when Microsoft Office improperly validates input before loading dynamic link library (DLL) files, aka 'Microsoft Office Remote Code Execution Vulnerability'.
Affected Software
1 affected component
Microsoft 365 Apps
Remediation
Event History
Jul 14, 2020
CVE Published
via MITRE·10:54 PM
Data Sourced
via MITRE·10:54 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2020-1458?
CVE-2020-1458 is rated as critical due to its potential for exploitation leading to remote code execution.
2
How do I fix CVE-2020-1458?
To mitigate CVE-2020-1458, ensure that your Microsoft Office software is updated to the latest version as provided by Microsoft.
3
What systems are affected by CVE-2020-1458?
CVE-2020-1458 affects Microsoft 365 Apps, particularly those that utilize dynamic link library loading.
4
Can CVE-2020-1458 be exploited remotely?
Yes, CVE-2020-1458 can be exploited remotely if a user opens a specially crafted file.
5
What are the potential impacts of CVE-2020-1458?
The potential impacts of CVE-2020-1458 include the execution of arbitrary code and compromise of the affected system.