CVE-2021-40471: Microsoft Excel Remote Code Execution Vulnerability
Published Oct 13, 2021
·Updated
Microsoft Excel Remote Code Execution Vulnerability
Affected Software
6 affected components
Microsoft 365 Apps
Microsoft Office=2013-sp1
Microsoft Office=2013-sp1
Microsoft Office=2016
Microsoft Office=2019
Microsoft Office Long Term Servicing Channel=2021
Remediation
Event History
Oct 13, 2021
CVE Published
via MITRE·12:27 AM
Data Sourced
via MITRE·12:27 AM
DescriptionSeverity
Data Sourced
via NVD·01:15 AM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2021-40471?
CVE-2021-40471 has a critical severity rating that allows remote code execution vulnerabilities in Microsoft Excel.
2
How do I fix CVE-2021-40471?
To fix CVE-2021-40471, install the latest security updates provided by Microsoft for the affected versions of Office.
3
What versions of Microsoft Office are affected by CVE-2021-40471?
CVE-2021-40471 affects Microsoft 365 Apps, Office 2013 SP1, Office 2016, Office 2019, and Office Long Term Servicing Channel 2021.
4
What is the exploitation risk of CVE-2021-40471?
The exploitation risk of CVE-2021-40471 includes unauthorized access and control over affected systems if users open a crafted Excel file.
5
Is there a workaround for CVE-2021-40471?
There are no official workarounds for CVE-2021-40471, and updating to the latest version is recommended for protection.