CVE-2020-17125: Microsoft Excel Remote Code Execution Vulnerability
Published Dec 8, 2020
·Updated
Microsoft Excel Remote Code Execution Vulnerability
Affected Software
21 affected componentsFixes available
Microsoft 365 Apps
Microsoft Excel=2010-sp1
Microsoft Excel=2013-sp1
Microsoft Excel=2013-sp1
Microsoft Excel=2016
Microsoft Office=2019
Microsoft Office Online Server
Microsoft Office Web Apps=2013-sp1
Microsoft Excel 2013
Microsoft Excel 2013
Microsoft Excel 2010
Microsoft Excel 2010
Microsoft Excel 2013 RT
Microsoft Excel 2016
Microsoft Excel 2016
Microsoft 365 Apps for Enterprise
Microsoft 365 Apps for Enterprise
Microsoft Office 2019 for 64-bit editions
Microsoft Office Web Apps 2013
Microsoft Office Online Server
Microsoft Office 2019 for 32-bit editions
Remediation
Event History
Dec 8, 2020
CVE Published
via Microsoft·08:00 AM
Data Sourced
via Microsoft·08:00 AM
DescriptionSeverityWeakness
Data Sourced
via Microsoft·08:00 AM
Affected Software
Updated
via Microsoft·08:00 AM
Description
Dec 9, 2020
CVE Published
via MITRE·11:36 PM
Data Sourced
via MITRE·11:36 PM
DescriptionSeverity
Dec 10, 2020
Data Sourced
via NVD·12:15 AM
RemedyDescriptionSeverityAffected Software
Aug 12, 58408
Event
01:40 PM
Frequently Asked Questions
1
What is CVE-2020-17125?
CVE-2020-17125 is a remote code execution vulnerability in Microsoft Excel.
2
How severe is CVE-2020-17125?
CVE-2020-17125 has a severity rating of 7.8, which is considered critical.
3
Which software are affected by CVE-2020-17125?
Microsoft Office LTSC for Mac 2021, Microsoft Excel 2010 SP1, Microsoft Excel 2013 SP1, Microsoft Excel 2016, Microsoft Office 2019, Microsoft Office Online Server, and Microsoft Office Web Apps 2013 SP1 are affected by CVE-2020-17125.
4
What is the fix for CVE-2020-17125?
Install the latest security updates provided by Microsoft to fix CVE-2020-17125.
5
Where can I find more information about CVE-2020-17125?
You can find more information about CVE-2020-17125 at the following link: [Microsoft Security Guidance Advisory](https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-17125)