10 High
CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
COMPLETE
Integrity Impact
COMPLETE
Availability Impact
COMPLETE
AV:N/AC:L/Au:N/C:C/I:C/A:C
8.8 High
CVSS3
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
8.9 High
AI Score
Confidence
High
0.801 High
EPSS
Percentile
98.3%
Multiple vulnerabilities were found in Microsoft Office. Malicious users can exploit these vulnerabilities to execute arbitrary code, spoof user interface, obtain sensitive information, bypass security restrictions, gain privileges.
Below is a complete list of vulnerabilities:
Malware exists for this vulnerability. Usually such malware is classified as Exploit. More details.
CVE-2020-17129 critical
CVE-2020-17128 critical
CVE-2020-17115 critical
CVE-2020-17123 critical
CVE-2020-17122 critical
CVE-2020-17121 critical
CVE-2020-17120 high
CVE-2020-17130 high
CVE-2020-17126 high
CVE-2020-17125 critical
CVE-2020-17124 critical
CVE-2020-17127 critical
CVE-2020-17089 high
CVE-2020-17118 critical
CVE-2020-17119 high
Install necessary updates from the KB section, that are listed in your Windows Update (Windows Update usually can be accessed from the Control Panel)
Arbitrary code execution. Exploitation of vulnerabilities with this impact can lead to executing by abuser any code or commands at vulnerable machine or process.
Obtain sensitive information. Exploitation of vulnerabilities with this impact can lead to capturing by abuser information, critical for user or system.
Security bypass. Exploitation of vulnerabilities with this impact can lead to performing actions restricted by current security settings.
Privilege escalation. Exploitation of vulnerabilities with this impact can lead to performing by abuser actions, which are normally disallowed for current role.
Spoof user interface. Exploitation of vulnerabilities with this impact can lead to changes in user interface to beguile user into inaccurate behavior.
support.microsoft.com/kb/4484372
support.microsoft.com/kb/4484393
support.microsoft.com/kb/4484468
support.microsoft.com/kb/4486696
support.microsoft.com/kb/4486697
support.microsoft.com/kb/4486698
support.microsoft.com/kb/4486704
support.microsoft.com/kb/4486721
support.microsoft.com/kb/4486732
support.microsoft.com/kb/4486742
support.microsoft.com/kb/4486748
support.microsoft.com/kb/4486750
support.microsoft.com/kb/4486751
support.microsoft.com/kb/4486752
support.microsoft.com/kb/4486753
support.microsoft.com/kb/4486754
support.microsoft.com/kb/4486757
support.microsoft.com/kb/4486760
support.microsoft.com/kb/4493138
support.microsoft.com/kb/4493139
support.microsoft.com/kb/4493140
support.microsoft.com/kb/4493148
support.microsoft.com/kb/4493149
nvd.nist.gov/vuln/detail/CVE-2020-17089
nvd.nist.gov/vuln/detail/CVE-2020-17115
nvd.nist.gov/vuln/detail/CVE-2020-17118
nvd.nist.gov/vuln/detail/CVE-2020-17119
nvd.nist.gov/vuln/detail/CVE-2020-17120
nvd.nist.gov/vuln/detail/CVE-2020-17121
nvd.nist.gov/vuln/detail/CVE-2020-17122
nvd.nist.gov/vuln/detail/CVE-2020-17123
nvd.nist.gov/vuln/detail/CVE-2020-17124
nvd.nist.gov/vuln/detail/CVE-2020-17125
nvd.nist.gov/vuln/detail/CVE-2020-17126
nvd.nist.gov/vuln/detail/CVE-2020-17127
nvd.nist.gov/vuln/detail/CVE-2020-17128
nvd.nist.gov/vuln/detail/CVE-2020-17129
nvd.nist.gov/vuln/detail/CVE-2020-17130
statistics.securelist.com/
threats.kaspersky.com/en/class/Exploit/
threats.kaspersky.com/en/product/Microsoft-Excel/
threats.kaspersky.com/en/product/Microsoft-Office/
threats.kaspersky.com/en/product/Microsoft-Outlook/
10 High
CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
COMPLETE
Integrity Impact
COMPLETE
Availability Impact
COMPLETE
AV:N/AC:L/Au:N/C:C/I:C/A:C
8.8 High
CVSS3
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
8.9 High
AI Score
Confidence
High
0.801 High
EPSS
Percentile
98.3%