Office 365 Proplus

by Microsoft

Take action — actively targeted

Office 365 Proplus is actively targeted by attackers. A significant proportion of its known vulnerabilities are being exploited.

What to do
  1. Apply all available updates immediately
  2. Review your exposure — is this internet-facing?
  3. Monitor vendor advisories for this product

What Attackers Target

Vulnerabilities with high exploit probability 84.5%
Confirmed actively exploited (CISA) 2.4%
Public exploit code available 0.0%
Based on 84 known vulnerabilities. Percentages show the proportion that are actively dangerous — a low percentage means most vulnerabilities in this product are not being exploited.

Most Dangerous Vulnerabilities

CVE CVSS Exploit Probability Confirmed
CVE-2019-0541 8.8 83.4% Yes
CVE-2018-8587 7.8 46.8%
CVE-2019-1297 8.8 40.7% Yes
CVE-2020-0980 7.8 40.2%
CVE-2020-0892 7.8 40.2%
CVE-2019-1331 8.8 38.3%
CVE-2019-1448 7.8 38.0%
CVE-2019-1246 7.8 35.5%
CVE-2018-8628 7.8 34.5%
CVE-2018-8432 7.8 33.9%
CVE-2020-0961 7.8 33.7%
CVE-2020-0991 7.8 33.7%
CVE-2020-0855 7.8 33.7%
CVE-2020-0851 7.8 33.7%
CVE-2020-0653 7.8 33.7%
CVE-2020-0651 7.8 33.7%
CVE-2020-0650 7.8 33.7%
CVE-2020-0850 8.8 33.5%
CVE-2020-0760 8.8 33.5%
CVE-2020-0906 8.8 32.9%
51
/ 100
high-risk
Active Threat 50/50 · Critical
Exploit Availability 1/50 · Minimal

Score uses Wilson score intervals to account for sample size. Products with few CVEs are scored conservatively.