vulnerability
Microsoft CVE-2019-0801: Office Remote Code Execution Vulnerability
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 7 | (AV:N/AC:M/Au:N/C:P/I:P/A:P) | Apr 9, 2019 | Apr 9, 2019 | Aug 6, 2019 |
Severity
7
CVSS
(AV:N/AC:M/Au:N/C:P/I:P/A:P)
Published
Apr 9, 2019
Added
Apr 9, 2019
Modified
Aug 6, 2019
Description
A remote code execution vulnerability exists when Microsoft Office fails to properly handle certain files.
To exploit the vulnerability, an attacker would have to convince a user to open a specially crafted URL file that points to an Excel or PowerPoint file that was also downloaded.
The update addresses the vulnerability by correcting how Office handles these files.
Solutions
msft-kb4462223-334be4e6-18ce-4d4c-a133-3c720d8c1262msft-kb4462223-3abacd14-35b1-4683-bc82-2c8c60042dd5msft-kb4464504-12ced240-8694-48f6-9c0a-ea5ad6c631a4msft-kb4464504-c4898280-d922-4196-9d95-89d17b01ee7c
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.