#VU48848 Security restrictions bypass in Microsoft Excel - CVE-2020-17130 

 

#VU48848 Security restrictions bypass in Microsoft Excel - CVE-2020-17130

Published: December 8, 2020


Vulnerability identifier: #VU48848
Vulnerability risk: Medium
CVSSv4.0: CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:U/U:Green
CVE-ID: CVE-2020-17130
CWE-ID: CWE-264
Exploitation vector: Remote access
Exploit availability: No public exploit available
Vulnerable software:
Microsoft Excel
Software vendor:
Microsoft

Description

The vulnerability allows a remote attacker to bypass implemented security restrictions.

The vulnerability exists due to Microsoft Excel  does not properly impose security restrictions, which leads to security restrictions bypass.


Remediation

Install updates from vendor's website.

External links