VDB

CVE-2020-1445

CVE-2020-1445 PUBLISHED CVSS 5.5 MEDIUM

An information disclosure vulnerability exists when Microsoft Office improperly discloses the contents of its memory, aka 'Microsoft Office Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-1342.

EPSS 27.51% · 96.5th percentile

Risk Scores

CVSS 3.1
5.5
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
EPSS Score
27.51%
96.5th percentile

Affected Products

VendorProductVersions
microsoftoffice_online_server
microsoftsharepoint_enterprise_server2013, 2016
MicrosoftMicrosoft Office2019 for 64-bit editions, 2019 for Mac, 2010 Service Pack 2 (32-bit editions)
microsoftoffice_web_apps2013, 2010
microsoftoffice2019, 2016, 2019
MicrosoftMicrosoft Office Web Apps2010 Service Pack 2, 2013 Service Pack 1
microsoft365_apps
microsoftword2013, 2010, 2013
MicrosoftMicrosoft SharePoint Enterprise Server2016, *
MicrosoftMicrosoft SharePoint Server2010 Service Pack 2, 2019
MicrosoftMicrosoft 365 Apps for Enterprise for 32-bit Systems*
MicrosoftMicrosoft Word2013 RT Service Pack 1, 2010 Service Pack 2 (32-bit editions), 2016 (64-bit edition)
MicrosoftMicrosoft 365 Apps for Enterprise for 64-bit Systemsunspecified
MicrosoftMicrosoft Office Online Serverunspecified

Timeline

  • Jul 14, 2020 CVE Published
  • Apr 14, 2021 EPSS Score
  • Aug 24, 2021 EPSS Score
  • Oct 26, 2021 EPSS Score
  • Jan 6, 2022 EPSS Score
  • Feb 28, 2022 EPSS Score
  • May 1, 2022 EPSS Score
  • Jul 3, 2022 EPSS Score
  • Nov 6, 2022 EPSS Score
  • Jan 8, 2023 EPSS Score
  • Mar 11, 2023 EPSS Score
  • Jun 6, 2023 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›