Information Disclosure Vulnerability in Microsoft Excel by Microsoft
CVE-2019-0669
6.5MEDIUM
Key Information:
- Vendor
- Microsoft
- Vendor
- CVE Published:
- 5 March 2019
Summary
An information disclosure vulnerability exists when Microsoft Excel fails to properly manage sensitive data in its memory. This can potentially expose confidential user information to attackers. Exploiting this vulnerability could allow unauthorized access to data that should remain secure. Users are encouraged to apply available security updates to mitigate the risk associated with this issue.
Affected Version(s)
Microsoft Excel 2010 Service Pack 2 (32-bit editions)
Microsoft Excel 2010 Service Pack 2 (64-bit editions)
Microsoft Excel 2013 Service Pack 1 (32-bit editions)
References
CVSS V3.1
Score:
6.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved