CVE-2020-1445 PUBLISHED CVSS 5.5 MEDIUM

An information disclosure vulnerability exists when Microsoft Office improperly discloses the contents of its memory, aka 'Microsoft Office Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-1342.

EPSS 27.51% · 96.4th percentile

Risk Scores

CVSS v3.1
5.5
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
EPSS Score
27.51%
96.4th percentile

Affected Products

VendorProductVersions
microsoftoffice_online_server
microsoftsharepoint_enterprise_server2013, 2016
MicrosoftMicrosoft Office2019 for Mac, 2016 for Mac, 2010 Service Pack 2 (32-bit editions)
microsoftoffice_web_apps2010, 2013
microsoftoffice2019, 2010, 2016
MicrosoftMicrosoft Office Web Apps2010 Service Pack 2, 2013 Service Pack 1
microsoft365_apps
microsoftword2010, 2013, 2013
MicrosoftMicrosoft SharePoint Enterprise Server2016, 2013 Service Pack 1
MicrosoftMicrosoft SharePoint Server2019, 2010 Service Pack 2
MicrosoftMicrosoft 365 Apps for Enterprise for 32-bit Systemsunspecified
MicrosoftMicrosoft Word2010 Service Pack 2 (64-bit editions), 2010 Service Pack 2 (32-bit editions), 2016 (64-bit edition)
MicrosoftMicrosoft 365 Apps for Enterprise for 64-bit Systemsunspecified
MicrosoftMicrosoft Office Online Serverunspecified

Timeline

References

Open in Interactive Console →