Microsoft Office
cpe:2.3:a:microsoft:office:*:*:*:*:*:*:*
A vulnerability in Microsoft Office products, including Excel and Word for Android, as well as Office LTSC for Mac 2021 and 2024, has been identified. This vulnerability involves improper access control, which allows an unauthorized attacker to perform spoofing actions locally. The issue arises from a lack of adequate access controls, enabling spoofing opportunities within the affected applications.
Exploitation of this vulnerability could lead to unauthorized spoofing actions within the affected Microsoft Office applications.
Users can download the security update for this vulnerability through the Microsoft Update Catalog. Instructions for applying the update are available in the release notes linked in the Knowledge Base Articles for each affected product.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.