CVE-2020-0650

Description

A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka Microsoft Excel Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2020-0651, CVE-2020-0653.

Risk Information

Base Score
7.8
MODERATE
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
33.652

Associated Vulnerability

VulnerabilityOS Platform
Microsoft Excel Remote Code Execution Vulnerability for Microsoft Excel 2010 (KB4484243) 32-Bit EditionWindows
Microsoft Excel Remote Code Execution Vulnerability for Microsoft Excel 2010 (KB4484243) 64-Bit EditionWindows
Microsoft Excel Remote Code Execution Vulnerability for Microsoft Excel 2016 (KB4484217) 32-Bit EditionWindows
Microsoft Excel Remote Code Execution Vulnerability for Microsoft Excel 2016 (KB4484217) 64-Bit EditionWindows
Microsoft Excel Remote Code Execution Vulnerability for Microsoft Excel 2013 (KB4484234) 32-Bit EditionWindows
Microsoft Excel Remote Code Execution Vulnerability for Microsoft Excel 2013 (KB4484234) 64-Bit EditionWindows
Microsoft Excel Remote Code Execution Vulnerability for Office 365 Professional Plus Semi Annual Targeted Channel for x64 1908 of version(11929.20562)Windows
Microsoft Excel Remote Code Execution Vulnerability for Office 365 Professional Plus Semi Annual Targeted Channel for x86 1908 of version(11929.20562)Windows
Microsoft Excel Remote Code Execution Vulnerability for Office 365 Targeted Channel Version 1908 (Build 11929.20562)Windows
Microsoft Excel Remote Code Execution Vulnerability for Office 365 Professional Plus Monthly Channel for x64 1912 of version(12325.20298)Windows
Microsoft Excel Remote Code Execution Vulnerability for Office 365 Professional Plus Monthly Channel for x86 1912 of version(12325.20298)Windows
Microsoft Excel Remote Code Execution Vulnerability for Office 365 Business Edition Monthly Channel for x64 1912 of version(12325.20298)Windows
Microsoft Excel Remote Code Execution Vulnerability for Office 365 Business Edition Monthly Channel for x86 1912 of version(12325.20298)Windows
Microsoft Excel Remote Code Execution Vulnerability for Office 365 Monthly Channel Version 1912 (Build 12325.20298)Windows

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-28109Security Update for Microsoft Excel 2010 (KB4484243) 32-Bit Edition
PATCH-28110Security Update for Microsoft Excel 2010 (KB4484243) 64-Bit Edition
PATCH-28117Security Update for Microsoft Excel 2016 (KB4484217) 32-Bit Edition
PATCH-28118Security Update for Microsoft Excel 2016 (KB4484217) 64-Bit Edition
PATCH-28113Security Update for Microsoft Excel 2013 (KB4484234) 32-Bit Edition
PATCH-28114Security Update for Microsoft Excel 2013 (KB4484234) 64-Bit Edition
PATCH-28257Update for Office 365 Professional Plus Semi Annual Targeted Channel for x64 1908 of version(11929.20562)
PATCH-28259Update for Office 365 Professional Plus Semi Annual Targeted Channel for x86 1908 of version(11929.20562)
PATCH-28272Update for Office 365 Targeted Channel Version 1908 (Build 11929.20562)
PATCH-28247Update for Office 365 Professional Plus Monthly Channel for x64 1912 of version(12325.20298)
PATCH-28249Update for Office 365 Professional Plus Monthly Channel for x86 1912 of version(12325.20298)
PATCH-28251Update for Office 365 Business Edition Monthly Channel for x64 1912 of version(12325.20298)
PATCH-28253Update for Office 365 Business Edition Monthly Channel for x86 1912 of version(12325.20298)
PATCH-28271Update for Office 365 Monthly Channel Version 1912 (Build 12325.20298)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234