AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2020-13579

HIGH · CVSS 7.8 EPSS 72.56% Public Exploit

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2021-02-04 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 7.8. It affects Office. Public exploit code or proof-of-concept references have been detected in its references. Its EPSS score suggests a 72.6% probability of exploitation in the next 30 days.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit code execution

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2020-13579
Severity
HIGH
CVSS
7.8
EPSS
72.56%
Office

Original NVD Description

An exploitable integer overflow vulnerability exists in the PlanMaker document parsing functionality of SoftMaker Office 2021’s PlanMaker application. A specially crafted document can cause the document parser perform arithmetic that may overflow which can result in an undersized heap allocation. Later when copying data from the file into this allocation, a heap-based buffer overflow will occur which can corrupt memory. These types of memory corruptions can allow for code execution under the context of the application. An attacker can entice the victim to open a document to trigger this vulnerability.

Related CVEs

Other vulnerabilities affecting the same vendor(s)