CVE-2015-6123: XSS
Cross-site scripting (XSS) vulnerability in Microsoft Excel for Mac 2011 and Excel 2016 for Mac allows remote attackers to inject arbitrary web script or HTML via a crafted e-mail message that is mishandled by Outlook for Mac, aka "Microsoft Outlook for Mac Spoofing Vulnerability."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-6123?
CVE-2015-6123 is considered a critical cross-site scripting vulnerability that can allow attackers to inject arbitrary web scripts or HTML.
How do I fix CVE-2015-6123?
To fix CVE-2015-6123, users should update Microsoft Excel for Mac to the latest version that addresses this vulnerability.
What software is affected by CVE-2015-6123?
CVE-2015-6123 affects Microsoft Excel for Mac 2011 and Excel 2016 for Mac.
What type of attack does CVE-2015-6123 enable?
CVE-2015-6123 enables attackers to exploit cross-site scripting to inject malicious scripts via crafted email messages.
Who can exploit CVE-2015-6123?
Remote attackers can exploit CVE-2015-6123 by sending specially crafted email messages to users of the affected Excel applications.