CVE-2019-1263

Description

An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka Microsoft Excel Information Disclosure Vulnerability.

Risk Information

Base Score
5.5
MODERATE
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
EPSS Score
Exploitation Probability
16.075

Associated Vulnerability

VulnerabilityOS Platform
Microsoft Excel Information Disclosure Vulnerability for Microsoft Excel 2016 (KB4475579) 32-Bit EditionWindows
Microsoft Excel Information Disclosure Vulnerability for Microsoft Excel 2016 (KB4475579) 64-Bit EditionWindows
Microsoft Excel Information Disclosure Vulnerability for Microsoft Excel 2013 (KB4475566) 64-Bit EditionWindows
Microsoft Excel Information Disclosure Vulnerability for Microsoft Excel 2013 (KB4475566) 32-Bit EditionWindows
Microsoft Excel Information Disclosure Vulnerability for Microsoft Excel 2010 (KB4475574) 64-Bit EditionWindows
Microsoft Excel Information Disclosure Vulnerability for Microsoft Excel 2010 (KB4475574) 32-Bit EditionWindows
Microsoft Office Security Feature Bypass Vulnerability for Office 365 Professional Plus Semi Annual Channel for x64 1902 of version(11328.20420)Windows
Microsoft Office Security Feature Bypass Vulnerability for Office 365 Professional Plus Semi Annual Channel for x86 1902 of version(11328.20420)Windows
Microsoft Office Security Feature Bypass Vulnerability for Office 365 Business Edition Semi Annual Channel for x64 1902 of version(11328.20420)Windows
Microsoft Office Security Feature Bypass Vulnerability for Office 365 Business Edition Semi Annual Channel for x86 1902 of version(11328.20420)Windows
Microsoft Office Security Feature Bypass Vulnerability for Office 365 Professional Plus Monthly Channel for x64 1908 of version(11929.20300)Windows
Microsoft Office Security Feature Bypass Vulnerability for Office 365 Professional Plus Monthly Channel for x86 1908 of version(11929.20300)Windows
Microsoft Office Security Feature Bypass Vulnerability for Office 365 Business Edition Monthly Channel for x64 1908 of version(11929.20300)Windows
Microsoft Office Security Feature Bypass Vulnerability for Office 365 Business Edition Monthly Channel for x86 1908 of version(11929.20300)Windows
Microsoft Office Security Feature Bypass Vulnerability for Office 365 Professional Plus Semi Annual Targeted Channel for x64 1908 of version(11929.20300)Windows
Microsoft Office Security Feature Bypass Vulnerability for Office 365 Professional Plus Semi Annual Targeted Channel for x86 1908 of version(11929.20300)Windows

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-27488Security Update for Microsoft Excel 2016 (KB4475579) 32-Bit Edition
PATCH-27489Security Update for Microsoft Excel 2016 (KB4475579) 64-Bit Edition
PATCH-27481Security Update for Microsoft Excel 2013 (KB4475566) 64-Bit Edition
PATCH-27482Security Update for Microsoft Excel 2013 (KB4475566) 32-Bit Edition
PATCH-27472Security Update for Microsoft Excel 2010 (KB4475574) 64-Bit Edition
PATCH-27473Security Update for Microsoft Excel 2010 (KB4475574) 32-Bit Edition
PATCH-27513Update for Office 365 Professional Plus Semi Annual Channel for x64 1902 of version(11328.20420)
PATCH-27515Update for Office 365 Professional Plus Semi Annual Channel for x86 1902 of version(11328.20420)
PATCH-27517Update for Office 365 Business Edition Semi Annual Channel for x64 1902 of version(11328.20420)
PATCH-27519Update for Office 365 Business Edition Semi Annual Channel for x86 1902 of version(11328.20420)
PATCH-27505Update for Office 365 Professional Plus Monthly Channel for x64 1908 of version(11929.20300)
PATCH-27507Update for Office 365 Professional Plus Monthly Channel for x86 1908 of version(11929.20300)
PATCH-27509Update for Office 365 Business Edition Monthly Channel for x64 1908 of version(11929.20300)
PATCH-27511Update for Office 365 Business Edition Monthly Channel for x86 1908 of version(11929.20300)
PATCH-27521Update for Office 365 Professional Plus Semi Annual Targeted Channel for x64 1908 of version(11929.20300)
PATCH-27523Update for Office 365 Professional Plus Semi Annual Targeted Channel for x86 1908 of version(11929.20300)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234