CVE-2020-0991 PUBLISHED CVSS 7.800000190734863 HIGH

A remote code execution vulnerability exists in Microsoft Office software when the software fails to properly handle objects in memory, aka 'Microsoft Office Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0760.

EPSS 33.65% · 96.9th percentile

Risk Scores

CVSS v3.1
7.800000190734863
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
33.65%
96.9th percentile

Affected Products

VendorProductVersions
microsoftoffice2019, 2016, 2010
MicrosoftMicrosoft Office2010 Service Pack 2 (64-bit editions), 2013 RT Service Pack 1, 2013 Service Pack 1 (32-bit editions)
microsoftoffice_365_proplus
MicrosoftOffice 365 ProPlus64-bit Systems, 32-bit Systems

Timeline

References

Open in Interactive Console →