CVE-2023-28285: Microsoft Office Remote Code Execution Vulnerability
Microsoft Office Remote Code Execution Vulnerability
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2023-28285?
CVE-2023-28285 is a Microsoft Office Remote Code Execution Vulnerability.
How severe is CVE-2023-28285?
CVE-2023-28285 has a severity rating of high (7 out of 10).
Which software products are affected by CVE-2023-28285?
Microsoft Office LTSC for Mac 2021, Microsoft 365 Apps for Enterprise (x86_64 and x86), and Microsoft Office 2019 for Mac are affected by CVE-2023-28285.
How do I fix CVE-2023-28285?
For Microsoft Office LTSC for Mac 2021 and Microsoft Office 2019 for Mac, apply the patch provided by Microsoft (URL: https://go.microsoft.com/fwlink/p/?linkid=831049). For Microsoft 365 Apps for Enterprise, refer to the security updates guide (URL: https://docs.microsoft.com/en-us/officeupdates/office365-proplus-security-updates).
Where can I find more information about CVE-2023-28285?
You can find more information about CVE-2023-28285 on the Microsoft Security Response Center website (URL: https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-28285).