CVE-2020-0884
3.7LOW
Key Information:
- Vendor
- Microsoft
- Status
- Vendor
- CVE Published:
- 12 March 2020
Summary
A spoofing vulnerability exists in Microsoft Visual Studio as it includes a reply URL that is not secured by SSL, aka 'Microsoft Visual Studio Spoofing Vulnerability'.
Affected Version(s)
Microsoft Visual Studio 2017 version 15.9 (includes 15.1 - 15.8) = unspecified
Microsoft Visual Studio 2019 16.0
Microsoft Visual Studio 2019 version 16.4 (includes 16.0 - 16.3) = unspecified
References
CVSS V3.1
Score:
3.7
Severity:
LOW
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved