CVE-2020-1322: Microsoft 365 Apps
Medium severity, CVSS 6.5. EPSS: 5.5% chance of exploitation in the next 30 days.
An information disclosure vulnerability exists when Microsoft Project reads out of bound memory due to an uninitialized variable, aka 'Microsoft Project Information Disclosure Vulnerability'.
Affected products
- Microsoft 365 Apps: affected versions not specified
- Microsoft Office: version 2019 only
- Microsoft Project: version 2010 only; version 2013 only; version 2016 only
Published 2020-06-09. Last modified 2026-06-17.