CVE-2020-1349: Microsoft 365 Apps
High severity, CVSS 7.8. EPSS: 22.4% chance of exploitation in the next 30 days.
A remote code execution vulnerability exists in Microsoft Outlook software when it fails to properly handle objects in memory, aka 'Microsoft Outlook Remote Code Execution Vulnerability'.
Affected products
- Microsoft 365 Apps: affected versions not specified
- Microsoft Office: version 2019 only
- Microsoft Outlook: version 2010 only; version 2013 only; version 2016 only
Published 2020-07-14. Last modified 2026-06-17.