First published: Tue Aug 10 2021(Updated: )
Microsoft Office Remote Code Execution Vulnerability
Credit: secure@microsoft.com secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Word | ||
Microsoft 365 Apps for Enterprise | ||
Microsoft Office 2019 for 64-bit editions | ||
Microsoft Office 2019 for 32-bit editions | ||
Microsoft 365 Apps for Enterprise | ||
Microsoft 365 Apps | ||
Microsoft Office | =2019 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-34478 is a vulnerability that allows remote attackers to execute arbitrary code on affected installations of Microsoft Word.
To exploit this vulnerability, user interaction is required. The target must visit a malicious page or open a malicious file.
The severity of this vulnerability is rated as high with a CVSS score of 7.8.
Microsoft Word, Microsoft 365 Apps for Enterprise (x86 and x86_64), Microsoft Office 2019 for 32-bit and 64-bit editions, and Microsoft Office LTSC for Mac 2021 are affected by this vulnerability.
To fix this vulnerability, users should apply the security updates provided by Microsoft for the affected software versions.