AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2020-13958

HIGH · CVSS 7.8 EPSS 2.69%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2020-11-17 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2020-13958
Severity
HIGH
CVSS
7.8
EPSS
2.69%
Office Apache

Original NVD Description

A vulnerability in Apache OpenOffice scripting events allows an attacker to construct documents containing hyperlinks pointing to an executable on the target users file system. These hyperlinks can be triggered unconditionally. In fixed versions no internal protocol may be called from the document event handler and other hyperlinks require a control-click.