CVE-2020-17126: Microsoft Excel Information Disclosure Vulnerability
Published Dec 8, 2020
·Updated
Microsoft Excel Information Disclosure Vulnerability
Affected Software
22 affected componentsFixes available
Microsoft 365 Apps
Microsoft Excel=2010-sp2
Microsoft Excel=2013-sp1
Microsoft Excel=2013-sp1
Microsoft Excel=2016
Microsoft Office=2019
Microsoft Office Online Server
Microsoft Office Web Apps=2013-sp1
Microsoft Excel 2013
Microsoft Office Web Apps 2013
Microsoft Excel 2010
Microsoft Excel 2013 RT
Microsoft Excel 2013
Microsoft Excel 2010
Microsoft Excel 2016
Microsoft 365 Apps for Enterprise
Microsoft Office Online Server
Microsoft Office 2019 for Mac
Microsoft Excel 2016
Microsoft 365 Apps for Enterprise
Microsoft Office 2019 for 32-bit editions
Microsoft Office 2019 for 64-bit editions
Remediation
Event History
Dec 8, 2020
CVE Published
via Microsoft·08:00 AM
Data Sourced
via Microsoft·08:00 AM
DescriptionSeverityWeakness
Data Sourced
via Microsoft·08:00 AM
Affected Software
Updated
via Microsoft·08:00 AM
Description
Dec 9, 2020
CVE Published
via MITRE·11:36 PM
Data Sourced
via MITRE·11:36 PM
DescriptionSeverity
Dec 10, 2020
Data Sourced
via NVD·12:15 AM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is CVE-2020-17126?
CVE-2020-17126 is a Microsoft Excel Information Disclosure Vulnerability.
2
How severe is CVE-2020-17126?
CVE-2020-17126 has a severity level of medium with a CVSS score of 5.5.
3
Which software are affected by CVE-2020-17126?
Microsoft Office LTSC for Mac 2021, Microsoft Excel 2010 SP2, Microsoft Excel 2013 SP1, Microsoft Excel 2016, Microsoft Office 2019, Microsoft Office Online Server, and Microsoft Office Web Apps 2013 SP1 are affected by CVE-2020-17126.
4
How can I fix CVE-2020-17126?
To fix CVE-2020-17126, it is recommended to install the latest security updates provided by Microsoft.
5
Where can I find more information about CVE-2020-17126?
You can find more information about CVE-2020-17126 on the Microsoft Security Guidance Advisory page: [link](https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-17126).