CVE-2019-0540
Published: Mar 6, 2019
Modified: Aug 4, 2024
Description
A security feature bypass vulnerability exists when Microsoft Office does not validate URLs.An attacker could send a victim a specially crafted file, which could trick the victim into entering credentials, aka 'Microsoft Office Security Feature Bypass Vulnerability'.
| Vendor | Product | Versions |
|---|---|---|
Microsoft | Microsoft Office | affected 2010 Service Pack 2 (32-bit editions)affected 2010 Service Pack 2 (64-bit editions)affected 2013 Service Pack 1 (32-bit editions)affected 2013 Service Pack 1 (64-bit editions)affected 2013 RT Service Pack 1+5 more versions |
Microsoft | Microsoft Excel Viewer | affected unspecified |
Microsoft | Office 365 ProPlus | affected 32-bit Systemsaffected 64-bit Systems |
Microsoft | Microsoft PowerPoint Viewer | affected unspecified |
Microsoft | Microsoft Office Compatibility Pack | affected Service Pack 3 |
References
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now