Show plain JSON{"id": "CVE-2019-1462", "metrics": {"cvssMetricV2": [{"type": "Primary", "source": "nvd@nist.gov", "cvssData": {"version": "2.0", "baseScore": 9.3, "accessVector": "NETWORK", "vectorString": "AV:N/AC:M/Au:N/C:C/I:C/A:C", "authentication": "NONE", "integrityImpact": "COMPLETE", "accessComplexity": "MEDIUM", "availabilityImpact": "COMPLETE", "confidentialityImpact": "COMPLETE"}, "acInsufInfo": false, "impactScore": 10.0, "baseSeverity": "HIGH", "obtainAllPrivilege": false, "exploitabilityScore": 8.6, "obtainUserPrivilege": false, "obtainOtherPrivilege": false, "userInteractionRequired": true}], "cvssMetricV31": [{"type": "Primary", "source": "nvd@nist.gov", "cvssData": {"scope": "UNCHANGED", "version": "3.1", "baseScore": 7.8, "attackVector": "LOCAL", "baseSeverity": "HIGH", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H", "integrityImpact": "HIGH", "userInteraction": "REQUIRED", "attackComplexity": "LOW", "availabilityImpact": "HIGH", "privilegesRequired": "NONE", "confidentialityImpact": "HIGH"}, "impactScore": 5.9, "exploitabilityScore": 1.8}]}, "published": "2019-12-10T22:15:16.230", "references": [{"url": "https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-1462", "tags": ["Patch", "Vendor Advisory"], "source": "secure@microsoft.com"}, {"url": "https://www.zerodayinitiative.com/advisories/ZDI-19-1006/", "tags": ["Third Party Advisory"], "source": "secure@microsoft.com"}, {"url": "https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-1462", "tags": ["Patch", "Vendor Advisory"], "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "https://www.zerodayinitiative.com/advisories/ZDI-19-1006/", "tags": ["Third Party Advisory"], "source": "af854a3a-2127-422b-91ae-364da2661108"}], "vulnStatus": "Modified", "weaknesses": [{"type": "Primary", "source": "nvd@nist.gov", "description": [{"lang": "en", "value": "CWE-908"}]}], "descriptions": [{"lang": "en", "value": "A remote code execution vulnerability exists in Microsoft PowerPoint software when the software fails to properly handle objects in memory, aka 'Microsoft PowerPoint Remote Code Execution Vulnerability'."}, {"lang": "es", "value": "Hay una vulnerabilidad de ejecuci\u00f3n de c\u00f3digo remota en el software Microsoft PowerPoint cuando el software no puede manejar apropiadamente los objetos en memoria, tambi\u00e9n se conoce como \"Microsoft PowerPoint Remote Code Execution Vulnerability\"."}], "lastModified": "2024-11-21T04:36:44.310", "configurations": [{"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:a:microsoft:office:2016:*:*:*:*:mac_os:*:*", "vulnerable": true, "matchCriteriaId": "A1A868C4-0A58-4660-9492-1BADD99D8E59"}, {"criteria": "cpe:2.3:a:microsoft:office:2019:*:*:*:*:-:*:*", "vulnerable": true, "matchCriteriaId": "C5282C83-86B8-442D-851D-B54E88E8B1F1"}, {"criteria": "cpe:2.3:a:microsoft:office:2019:*:*:*:*:macos:*:*", "vulnerable": true, "matchCriteriaId": "40961B9E-80B6-42E0-A876-58B3CE056E4E"}, {"criteria": "cpe:2.3:a:microsoft:office_365_proplus:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CA035812-F35A-43F1-9A8D-EE02201AA10A"}, {"criteria": "cpe:2.3:a:microsoft:powerpoint:2010:sp2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9CCB2D72-B779-4772-8F72-7177E3F47A92"}, {"criteria": "cpe:2.3:a:microsoft:powerpoint:2013:sp1:*:*:rt:*:*:*", "vulnerable": true, "matchCriteriaId": "36A1FA52-BFBD-4C88-9CBE-B68E55C75726"}, {"criteria": "cpe:2.3:a:microsoft:powerpoint:2016:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C971A8FC-3897-496D-BB9A-9E6C8A03AEA1"}], "operator": "OR"}]}], "sourceIdentifier": "secure@microsoft.com"}