VDB

CVE-2019-1204

CVE-2019-1204 PUBLISHED CVSS 4.300000190734863 MEDIUM

An elevation of privilege vulnerability exists when Microsoft Outlook initiates processing of incoming messages without sufficient validation of the formatting of the messages, aka 'Microsoft Outlook Elevation of Privilege Vulnerability'.

EPSS 8.58% · 92.6th percentile

Risk Scores

CVSS 3.0
4.300000190734863
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N
EPSS Score
8.58%
92.6th percentile

Affected Products

VendorProductVersions
MicrosoftMicrosoft Outlook 2013 Service Pack 115.0.0.0
MicrosoftMicrosoft Office 201919.0.0
microsoftoutlook2013, 2010, 2016
microsoftoffice2019
MicrosoftOffice 365 ProPlus16.0.0
microsoftoffice_365_proplus
MicrosoftMicrosoft Outlook 2010 Service Pack 213.0.0.0
MicrosoftMicrosoft Outlook 201616.0.0.0

Timeline

  • Aug 14, 2019 CVE Published
  • Apr 14, 2021 EPSS Score
  • Jun 23, 2021 EPSS Score
  • Oct 26, 2021 EPSS Score
  • Dec 27, 2021 EPSS Score
  • Feb 28, 2022 EPSS Score
  • Apr 1, 2022 EPSS Score
  • May 1, 2022 EPSS Score
  • Sep 4, 2022 EPSS Score
  • Nov 6, 2022 EPSS Score
  • Jan 8, 2023 EPSS Score
  • Mar 7, 2023 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›