Cloud Defense Logo

Products

Solutions

Company

Book A Live Demo

CVE-2020-0760 : What You Need to Know

Learn about CVE-2020-0760, a remote code execution flaw in Microsoft Office, impacting various products and versions. Find mitigation steps and how to protect your systems.

A remote code execution vulnerability exists when Microsoft Office improperly loads arbitrary type libraries, aka 'Microsoft Office Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0991.

Understanding CVE-2020-0760

This CVE involves a remote code execution vulnerability in Microsoft Office.

What is CVE-2020-0760?

This CVE identifies a flaw in Microsoft Office that allows remote attackers to execute arbitrary code.

The Impact of CVE-2020-0760

This vulnerability could lead to unauthorized access, data theft, and potential system compromise.

Technical Details of CVE-2020-0760

This section provides more specific technical details of the CVE.

Vulnerability Description

The vulnerability arises from how Microsoft Office handles arbitrary type libraries, enabling remote code execution.

Affected Systems and Versions

The vulnerability affects various Microsoft products and specific versions:

        Microsoft Project: 2013 Service Pack 1, 2016
        Microsoft Office: 2019, 2016, 2010
        Office 365 ProPlus: all versions
        Microsoft Excel, PowerPoint, Visio, Word: various versions
        Microsoft Publisher, Access, Outlook: specific versions mentioned

Exploitation Mechanism

Attackers can exploit this vulnerability by sending a specially crafted file to the target user, who must then open it using the affected Microsoft Office application.

Mitigation and Prevention

To protect systems from CVE-2020-0760, follow these actionable steps:

Immediate Steps to Take

        Apply security updates and patches from Microsoft promptly.
        Educate users about phishing emails and the risks of opening attachments from unknown sources.
        Implement strong email filtering to block suspicious attachments.

Long-Term Security Practices

        Regularly update Microsoft Office and other software to the latest versions.
        Utilize antivirus and antimalware software to detect and block malicious files.

Patching and Updates

        Monitor Microsoft's security advisories and apply recommended patches.
        Establish a robust system for updating software across all devices.

Popular CVEs

CVE Id

Published Date

Is your System Free of Underlying Vulnerabilities?
Find Out Now