CVE-2020-17124: Microsoft PowerPoint Remote Code Execution Vulnerability
Published Dec 8, 2020
·Updated
Microsoft PowerPoint Remote Code Execution Vulnerability
Affected Software
18 affected componentsFixes available
Microsoft 365 Apps
Microsoft Office Macos=2019
Microsoft PowerPoint=2010-sp2
Microsoft PowerPoint=2013-sp1
Microsoft PowerPoint=2013-sp1
Microsoft PowerPoint=2016
Microsoft PowerPoint 2010
Microsoft PowerPoint 2013 RT
Microsoft PowerPoint 2016
Microsoft PowerPoint 2010
Microsoft PowerPoint 2016
Microsoft PowerPoint 2013
Microsoft PowerPoint 2013
Microsoft 365 Apps for Enterprise
Microsoft 365 Apps for Enterprise
Microsoft Office 2019 for Mac
Microsoft Office 2019 for 64-bit editions
Microsoft Office 2019 for 32-bit editions
Remediation
Event History
Dec 8, 2020
CVE Published
via Microsoft·08:00 AM
Data Sourced
via Microsoft·08:00 AM
DescriptionSeverityWeakness
Data Sourced
via Microsoft·08:00 AM
Affected Software
Updated
via Microsoft·08:00 AM
Description
Dec 9, 2020
CVE Published
via MITRE·11:36 PM
Data Sourced
via MITRE·11:36 PM
DescriptionSeverity
Dec 10, 2020
Data Sourced
via NVD·12:15 AM
RemedyDescriptionSeverityAffected Software
Aug 12, 58408
Event
02:22 PM
Frequently Asked Questions
1
What is CVE-2020-17124?
CVE-2020-17124 is a Microsoft PowerPoint Remote Code Execution Vulnerability.
2
How severe is CVE-2020-17124?
CVE-2020-17124 has a severity rating of 7.8 (Critical).
3
Which software versions are affected by CVE-2020-17124?
CVE-2020-17124 affects various versions of Microsoft Office LTSC for Mac 2021, Microsoft Office 2019 for macOS, Microsoft PowerPoint 2010 SP2, Microsoft PowerPoint 2013 SP1, Microsoft PowerPoint 2016.
4
How does CVE-2020-17124 allow remote code execution?
CVE-2020-17124 allows remote code execution in Microsoft PowerPoint, which could allow an attacker to take control of the affected system.
5
What is the recommended action to fix CVE-2020-17124?
To fix CVE-2020-17124, it is recommended to apply the latest security updates provided by Microsoft.