CVE-2020-1349
high · 7.8A remote code execution vulnerability exists in Microsoft Outlook software when it fails to properly handle objects in memory, aka 'Microsoft Outlook Remote Code Execution Vulnerability'.
7.8
CVSS
22.4%
EPSS (exploit prob.)
98th
EPSS percentile
2020-07-14
Published
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| microsoft | 365_apps | all versions |
| microsoft | office | 2019 |
| microsoft | outlook | 2010 |
| microsoft | outlook | 2013 |
| microsoft | outlook | 2013 |
| microsoft | outlook | 2016 |
Check a specific version with /api/v1/cve/match.
References
- http://packetstormsecurity.com/files/169959/Microsoft-Outlook-2019-16.0.12624.20424-Remote-Code-Execution.html
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1349
- http://packetstormsecurity.com/files/169959/Microsoft-Outlook-2019-16.0.12624.20424-Remote-Code-Execution.html
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1349
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2020-1349