With the aim of patching major vulnerabilities in its Office products, Microsoft has released the Office security update through this week. This comes along with the cumulative monthly updates which Microsoft rolls out to fix bugs and security issues. The latest Office security update fixes RCE vulnerabilities, rated as critical and important across its products.
Microsoft Released Office Security Update to Fix RCE Bugs
Though Microsoft is having a hard time with the cumulative update since the beginning of this year, it’s at least seriously considering the security update to roll them timely. As latest, the Redmond based company has released this month’s Windows 10 update, which brings the build versions to KB4571756 and KB4574727.
While this update promised to fix various system vulnerabilities, Microsoft has released a standalone security update for patching the vulnerabilities in its Office products. This release contains a total of 30 security updates and 5 cumulative updates, that are intended to solve 13 vulnerabilities across 7 different products of Office.
Microsoft warns that Windows systems running “Microsoft Installer (.msi)” based editions and vulnerable “Click to Run” are vested with Remote Code Execution risks, and needs to be updated. If not, they could let an attacker to arbitrary code, thereby creating backdoor programs and view, change or delete data. Here are all the Office security updates;
Tag | CVE ID | Title | Severity |
Microsoft Office | CVE-2020-1594 | Microsoft Excel Remote Code Execution Vulnerability | Important |
Microsoft Office | CVE-2020-1335 | Microsoft Excel Remote Code Execution Vulnerability | Important |
Microsoft Office | CVE-2020-16855 | Microsoft Office Information Disclosure Vulnerability | Important |
Microsoft Office | CVE-2020-1338 | Microsoft Word Remote Code Execution Vulnerability | Important |
Microsoft Office | CVE-2020-1332 | Microsoft Excel Remote Code Execution Vulnerability | Important |
Microsoft Office | CVE-2020-1224 | Microsoft Excel Information Disclosure Vulnerability | Important |
Microsoft Office | CVE-2020-1218 | Microsoft Word Remote Code Execution Vulnerability | Important |
Microsoft Office | CVE-2020-1193 | Microsoft Excel Remote Code Execution Vulnerability | Important |
Microsoft Office SharePoint | CVE-2020-1345 | Microsoft Office SharePoint XSS Vulnerability | Important |
Microsoft Office SharePoint | CVE-2020-1205 | Microsoft SharePoint Spoofing Vulnerability | Important |
Microsoft Office SharePoint | CVE-2020-1210 | Microsoft SharePoint Remote Code Execution Vulnerability | Critical |
Microsoft Office SharePoint | CVE-2020-1514 | Microsoft Office SharePoint XSS Vulnerability | Important |
Microsoft Office SharePoint | CVE-2020-1595 | Microsoft SharePoint Remote Code Execution Vulnerability | Critical |
Microsoft Office SharePoint | CVE-2020-1523 | Microsoft SharePoint Server Tampering Vulnerability | Important |
Microsoft Office SharePoint | CVE-2020-1440 | Microsoft SharePoint Server Tampering Vulnerability | Important |
Microsoft Office SharePoint | CVE-2020-1200 | Microsoft SharePoint Remote Code Execution Vulnerability | Critical |
Microsoft Office SharePoint | CVE-2020-1482 | Microsoft Office SharePoint XSS Vulnerability | Important |
Microsoft Office SharePoint | CVE-2020-1198 | Microsoft Office SharePoint XSS Vulnerability | Important |
Microsoft Office SharePoint | CVE-2020-1227 | Microsoft Office SharePoint XSS Vulnerability | Important |
Microsoft Office SharePoint | CVE-2020-1576 | Microsoft SharePoint Remote Code Execution Vulnerability | Critical |
Microsoft Office SharePoint | CVE-2020-1452 | Microsoft SharePoint Remote Code Execution Vulnerability | Critical |
Microsoft Office SharePoint | CVE-2020-1575 | Microsoft Office SharePoint XSS Vulnerability | Important |
Microsoft Office SharePoint | CVE-2020-1453 | Microsoft SharePoint Remote Code Execution Vulnerability | Critical |
Microsoft Office SharePoint | CVE-2020-1460 | Microsoft SharePoint Server Remote Code Execution Vulnerability | Critical |
Read onto BleepingComputer’s report for relative update links to the Office, Word and Excel of versions 2010, 2013 and 2016. You can find the SharePoint and Office Online servers update links too.
Other Trending News:- News