Microsoft Excel Remote Code Execution Vulnerability

Vulnerability

A remote code execution vulnerability has been identified in Microsoft Excel. This issue allows an attacker to execute arbitrary code on the affected system. The vulnerability is present in multiple versions of Excel, including the 32-bit and 64-bit editions of Excel 2016, as well as various editions of Microsoft Office LTSC 2021, Office LTSC 2024, and Office 2019. Additionally, the vulnerability affects Microsoft 365 Apps for Enterprise, Office Online Server, and Microsoft Excel for Mac 2021 and 2024.

Impact

Exploitation of this vulnerability allows for remote code execution on the affected system.

Remediation

Users can apply the security updates provided by Microsoft to address this vulnerability. These security updates are available through the Microsoft Update Catalog and via Click-to-Run for Microsoft 365 Apps. Specific update details can be found in the Microsoft Knowledge Base articles linked in the Security Updates table.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
10.0
exploitability
4.4
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.