CVE Database
/

CVE-2019-0540

Back to search

CVE-2019-0540

Published: Mar 6, 2019

Modified: Aug 4, 2024

PUBLISHED

Description

A security feature bypass vulnerability exists when Microsoft Office does not validate URLs.An attacker could send a victim a specially crafted file, which could trick the victim into entering credentials, aka 'Microsoft Office Security Feature Bypass Vulnerability'.

VendorProductVersions

Microsoft

Microsoft Office

affected
2010 Service Pack 2 (32-bit editions)
affected
2010 Service Pack 2 (64-bit editions)
affected
2013 Service Pack 1 (32-bit editions)
affected
2013 Service Pack 1 (64-bit editions)
affected
2013 RT Service Pack 1

+5 more versions

Microsoft

Microsoft Excel Viewer

affected
unspecified

Microsoft

Office 365 ProPlus

affected
32-bit Systems
affected
64-bit Systems

Microsoft

Microsoft PowerPoint Viewer

affected
unspecified

Microsoft

Microsoft Office Compatibility Pack

affected
Service Pack 3

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now