CVE Vulnerabilities

CVE-2020-1447

Published: Jul 14, 2020 | Modified: Nov 21, 2024
CVSS 3.x
8.8
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
CVSS 2.x
6.8 MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory, aka Microsoft Word Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2020-1446, CVE-2020-1448.

Affected Software

NameVendorStart VersionEnd Version
365_appsMicrosoft- (including)- (including)
OfficeMicrosoft2010-sp2 (including)2010-sp2 (including)
OfficeMicrosoft2016 (including)2016 (including)
OfficeMicrosoft2019 (including)2019 (including)
Office_online_serverMicrosoft1.0 (including)1.0 (including)
Office_web_appsMicrosoft2010-sp2 (including)2010-sp2 (including)
Office_web_appsMicrosoft2013-sp1 (including)2013-sp1 (including)
Sharepoint_enterprise_serverMicrosoft2013-sp1 (including)2013-sp1 (including)
Sharepoint_enterprise_serverMicrosoft2016 (including)2016 (including)
Sharepoint_serverMicrosoft2010-sp2 (including)2010-sp2 (including)
Sharepoint_serverMicrosoft2019 (including)2019 (including)
WordMicrosoft2010-sp2 (including)2010-sp2 (including)
WordMicrosoft2013-sp1 (including)2013-sp1 (including)
WordMicrosoft2016 (including)2016 (including)
Word_rtMicrosoft2013-sp1 (including)2013-sp1 (including)

References