CVE Database
/

CVE-2019-0801

Back to search

CVE-2019-0801

Published: Apr 9, 2019

Modified: Aug 4, 2024

PUBLISHED

Description

A remote code execution vulnerability exists when Microsoft Office fails to properly handle certain files.To exploit the vulnerability, an attacker would have to convince a user to open a specially crafted URL file that points to an Excel or PowerPoint file that was also downloaded.The update addresses the vulnerability by correcting how Office handles these files., aka 'Office Remote Code Execution Vulnerability'.

VendorProductVersions

Microsoft

Microsoft Office

affected
2010 Service Pack 2 (32-bit editions)
affected
2010 Service Pack 2 (64-bit editions)
affected
2013 Service Pack 1 (32-bit editions)
affected
2013 Service Pack 1 (64-bit editions)
affected
2013 RT Service Pack 1

+4 more versions

Microsoft

Office 365 ProPlus

affected
32-bit Systems
affected
64-bit Systems

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now