Microsoft 365 Apps for Enterprise
cpe:2.3:a:microsoft:365_apps:*:*:*:*:*:*:*
A vulnerability allowing an authorized attacker to locally bypass a security feature has been identified in the Office Developer Platform. This issue arises from the use of a broken or risky cryptographic algorithm.
Exploitation of this vulnerability allows for a security feature bypass, specifically circumventing the Office Visual Basic for Applications (VBA) signature scheme.
Users can apply the security update available through the Microsoft 365 Apps for Enterprise Click-to-Run service to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.