CVE-2020-0884

3.7LOW

Summary

A spoofing vulnerability exists in Microsoft Visual Studio as it includes a reply URL that is not secured by SSL, aka 'Microsoft Visual Studio Spoofing Vulnerability'.

Affected Version(s)

Microsoft Visual Studio 2017 version 15.9 (includes 15.1 - 15.8) = unspecified

Microsoft Visual Studio 2019 16.0

Microsoft Visual Studio 2019 version 16.4 (includes 16.0 - 16.3) = unspecified

References

CVSS V3.1

Score:
3.7
Severity:
LOW
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.