CVE-2019-0947

Description

A remote code execution vulnerability exists when the Microsoft Office Access Connectivity Engine improperly handles objects in memory, aka Microsoft Office Access Connectivity Engine Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2019-0945, CVE-2019-0946.

Risk Information

Base Score
7.8
MODERATE
Vector
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
24.224

Associated Vulnerability

VulnerabilityOS Platform
Microsoft Office Access Connectivity Engine Remote Code Execution Vulnerability for Microsoft Office 2010 (KB4464567) 32-Bit EditionWindows
Microsoft Office Access Connectivity Engine Remote Code Execution Vulnerability for Microsoft Office 2010 (KB4464567) 64-Bit EditionWindows

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-26687Security Update for Microsoft Office 2010 (KB4464567) 32-Bit Edition
PATCH-26688Security Update for Microsoft Office 2010 (KB4464567) 64-Bit Edition

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234