9.3
CVE-2019-1297
- EPSS 56.78%
- Published 11.09.2019 22:15:18
- Last modified 07.04.2025 18:21:49
- Source secure@microsoft.com
- Teams watchlist Login
- Open Login
A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'.
Data is provided by the National Vulnerability Database (NVD)
Microsoft ≫ Office 365 Proplus Version-
03.03.2022: CISA Known Exploited Vulnerabilities (KEV) Catalog
Microsoft Excel Remote Code Execution Vulnerability
VulnerabilityA remote code execution vulnerability exists in Microsoft Excel when the software fails to properly handle objects in memory.
DescriptionApply updates per vendor instructions.
Required actionsType | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 56.78% | 0.98 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 8.8 | 2.8 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
|
nvd@nist.gov | 9.3 | 8.6 | 10 |
AV:N/AC:M/Au:N/C:C/I:C/A:C
|
134c704f-9b21-4f2e-91b3-4a467353bcc0 | 8.8 | 2.8 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
|