CVE-2020-1229Sensitive Information Exposure in Microsoft 365 Apps FOR Enterprise FOR 32-bit Systems

Severity
4.3MEDIUMNVD
EPSS
11.2%
top 6.48%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJun 9
Latest updateMar 7

Description

A security feature bypass vulnerability exists in Microsoft Outlook when Office fails to enforce security settings configured on a system, aka 'Microsoft Outlook Security Feature Bypass Vulnerability'.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:NExploitability: 2.8 | Impact: 1.4

Affected Packages6 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-gmw9-2jwr-g5m7: A security feature bypass vulnerability exists in Microsoft Outlook when Office fails to enforce security settings configured on a system, aka 'Micros2022-05-24
CVEList
CVE-2020-1229: A security feature bypass vulnerability exists in Microsoft Outlook when Office fails to enforce security settings configured on a system, aka 'Micros2020-06-09

📋Vendor Advisories

2
Chrome
Stable Channel Update for Desktop: CVE-2023-12282023-03-07
Microsoft
Microsoft Outlook Security Feature Bypass Vulnerability2020-06-09
CVE-2020-1229 — Sensitive Information Exposure | cvebase