Microsoft Office Out-of-Box Experience Cross-Site Scripting Vulnerability Allowing Spoofing
Vulnerability
A cross-site scripting vulnerability has been identified in the Office Out-of-Box Experience. This issue arises from improper input neutralization during web page generation, allowing an unauthorized attacker to perform spoofing over the network. The vulnerability affects all versions of Office Out-of-Box Experience.
Impact
Exploitation of this vulnerability could lead to spoofing attacks, allowing an attacker to impersonate another user or entity.
Added: Dec 18, 2025, 10:24 PM
Updated: Dec 18, 2025, 10:24 PM
Vulnerability Rating
Custom Algorithm
spread
0.0impact
1.3exploitability
7.4remediation
0.0relevance
1.4threat
0.0urgency
2.9incentive
5.0Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
