CVE-2020-0884

Severity CVSS v4.0:
Pending analysis
Type:
CWE-319 Cleartext Transmission of Sensitive Information
Publication date:
12/03/2020
Last modified:
17/03/2020

Description

A spoofing vulnerability exists in Microsoft Visual Studio as it includes a reply URL that is not secured by SSL, aka 'Microsoft Visual Studio Spoofing Vulnerability'.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:microsoft:visual_studio_2017:*:*:*:*:*:*:*:* 15.1 (including) 15.8 (including)
cpe:2.3:a:microsoft:visual_studio_2019:*:*:*:*:*:*:*:* 16.0 (including) 16.3 (including)