Security Feature Bypass Vulnerability in Microsoft Outlook
CVE-2020-0696

6.5MEDIUM

Key Information:

Vendor
Microsoft
Vendor
CVE Published:
11 February 2020

Summary

A vulnerability exists in Microsoft Outlook due to improper handling of URI formats. This allows attackers to bypass certain security features, potentially exposing users to risks associated with malicious content. Organizations should address this vulnerability by applying the appropriate security updates provided by Microsoft, as outlined in their advisory.

Affected Version(s)

Microsoft Office 2019 for 32-bit editions

Microsoft Office 2019 for 64-bit editions

Microsoft Outlook 2016 (32-bit edition)

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.