CVE-2020-0906 PUBLISHED CVSS 8.800000190734863 HIGH

A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0979.

EPSS 32.91% · 96.8th percentile

Risk Scores

CVSS v3.1
8.800000190734863
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
32.91%
96.8th percentile

Affected Products

VendorProductVersions
microsoftoffice2019, 2016, 2013
microsoftexcel2016, 2013, 2013
microsoftoffice_365_proplus
MicrosoftMicrosoft Office*, 2019 for 32-bit editions, 2019 for 64-bit editions
MicrosoftOffice 365 ProPlus64-bit Systems, 32-bit Systems
MicrosoftMicrosoft Excel2013 Service Pack 1 (32-bit editions), 2013 RT Service Pack 1, *

Timeline

References

Open in Interactive Console →