VDB

CVE-2020-1449

CVE-2020-1449 PUBLISHED CVSS 7.800000190734863 HIGH

A remote code execution vulnerability exists in Microsoft Project software when the software fails to check the source markup of a file, aka 'Microsoft Project Remote Code Execution Vulnerability'.

EPSS 14.77% · 94.6th percentile

Risk Scores

CVSS v3.1
7.800000190734863
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
14.77%
94.6th percentile

Affected Products

VendorProductVersions
microsoft365_apps
MicrosoftMicrosoft 365 Apps for Enterprise for 64-bit Systems*
MicrosoftMicrosoft 365 Apps for Enterprise for 32-bit Systemsunspecified
microsoftproject_2016
microsoftoffice2019, 2010, 2010
MicrosoftMicrosoft Project*, 2010 Service Pack 2 (64-bit editions), *
MicrosoftMicrosoft Office2019 for 64-bit editions, *

Timeline

  • Jul 14, 2020 CVE Published
  • Apr 14, 2021 EPSS Score
  • Aug 24, 2021 EPSS Score
  • Oct 25, 2021 EPSS Score
  • Jan 6, 2022 EPSS Score
  • Feb 4, 2022 EPSS Score
  • Apr 1, 2022 EPSS Score
  • May 1, 2022 EPSS Score
  • Sep 4, 2022 EPSS Score
  • Nov 5, 2022 EPSS Score
  • Mar 10, 2023 EPSS Score
  • Jun 20, 2023 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›