First published: Tue Sep 14 2021(Updated: )
Microsoft Office Visio Remote Code Execution Vulnerability
Credit: secure@microsoft.com secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Office Visio | ||
Microsoft Office 2019 for 32-bit editions | ||
Microsoft 365 Apps for Enterprise | ||
Microsoft 365 Apps for Enterprise | ||
Microsoft Office 2019 for 64-bit editions | ||
Microsoft 365 Apps | ||
Microsoft Office | =2019 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-38653 is a vulnerability that allows remote attackers to execute arbitrary code on affected installations of Microsoft Office Visio.
To exploit this vulnerability, user interaction is required, such as visiting a malicious page or opening a malicious file.
The severity of CVE-2021-38653 is high with a CVSS score of 7.8.
CVE-2021-38653 affects Microsoft Office Visio, Microsoft 365 Apps for Enterprise, Microsoft Office 2019, and Microsoft Office LTSC for Mac 2021.
To fix CVE-2021-38653, it is recommended to apply the security updates provided by Microsoft for the affected software versions.