Microsoft Excel
cpe:2.3:a:microsoft:excel:*:*:*:*:*:*:*
A remote code execution vulnerability has been identified in Microsoft Excel. This issue allows an attacker to execute arbitrary code on the affected system. The vulnerability is present in multiple versions of Excel, including the 2016 32-bit and 64-bit editions, Office LTSC for Mac 2021 and 2024, as well as various Microsoft 365 Apps for Enterprise editions. The vulnerability arises from a heap-based buffer overflow, which can be exploited by convincing a user to open a malicious file or through the Preview Pane.
Exploitation of this vulnerability allows for remote code execution on the affected system.
Users can apply the security updates provided by Microsoft to address this vulnerability. These security updates are available through the Microsoft Update Catalog, and instructions for downloading and installing them can be found on the Microsoft Support website.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.