#VU29735 Insecure DLL loading in Microsoft 365 Apps for Enterprise - CVE-2020-1458
Published: July 14, 2020 / Updated: July 15, 2020
Microsoft 365 Apps for Enterprise
Microsoft
Description
The vulnerability allows a remote attacker to compromise vulnerable system.
The vulnerability exists due to the application loads DLL libraries in an insecure manner within the Microsoft Office. A remote attacker can trick a victim to open a specially crafted Office document, and execute arbitrary code on victim's system.