Microsoft Outlook Spoofing Vulnerability Allowing Unauthorized Network-Based Spoofing

Vulnerability

A spoofing vulnerability has been identified in Microsoft Office Outlook. This issue arises from the exposure of sensitive information to unauthorized actors, enabling attackers to perform spoofing over the network. The vulnerability affects multiple Outlook versions, including Outlook 2016 (both 32-bit and 64-bit editions), Outlook LTSC 2021 (32-bit and 64-bit editions), Outlook LTSC 2024 (32-bit and 64-bit editions), and Outlook 2019 (32-bit and 64-bit editions).

Impact

Exploitation of this vulnerability could lead to unauthorized network-based spoofing, allowing attackers to impersonate another user or entity.

Remediation

Users can download the security update for Microsoft Outlook 2016, 2021, and 2024 (both 32-bit and 64-bit editions) from the Microsoft Update Catalog. For Microsoft SharePoint Server 2019 and 2016, security updates are also available through the Microsoft Update Catalog.

Added: Feb 10, 2026, 9:28 PM
Updated: Feb 11, 2026, 2:05 AM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
2.5
exploitability
4.7
remediation
7.7
relevance
2.9
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.