CVE-2022-21988: Microsoft Office Visio Remote Code Execution Vulnerability
Published Feb 8, 2022
·Updated
Microsoft Office Visio Remote Code Execution Vulnerability
Affected Software
9 affected componentsFixes available
Microsoft Office 2019 for 32-bit editions
Microsoft Office LTSC 2021 for 64-bit editions
Microsoft Office 2019 for 64-bit editions
Microsoft Office LTSC 2021 for 32-bit editions
Microsoft 365 Apps for Enterprise
Microsoft 365 Apps for Enterprise
Microsoft 365 Apps
Microsoft Office=2019
Microsoft Office Long Term Servicing Channel=2021
Event History
Feb 8, 2022
CVE Published
via Microsoft·08:00 AM
Data Sourced
via Microsoft·08:00 AM
DescriptionSeverityWeakness
Feb 9, 2022
CVE Published
via MITRE·04:36 PM
Data Sourced
via MITRE·04:36 PM
DescriptionSeverity
Frequently Asked Questions
1
What is the severity of CVE-2022-21988?
CVE-2022-21988 has a critical severity rating allowing for remote code execution.
2
How do I fix CVE-2022-21988?
To fix CVE-2022-21988, ensure that all affected Microsoft Office versions are updated to the latest security patches.
3
Which versions of Microsoft Office are affected by CVE-2022-21988?
CVE-2022-21988 affects Microsoft Office 2019, Office LTSC 2021, and Microsoft 365 Apps for Enterprise.
4
What types of attacks does CVE-2022-21988 enable?
CVE-2022-21988 enables attackers to execute arbitrary code on the victim's system.
5
Is CVE-2022-21988 exploited in the wild?
CVE-2022-21988 has been reported as actively exploited in the wild, emphasizing the need for immediate remediation.