CVE-2023-28295: Microsoft Publisher Remote Code Execution Vulnerability
Published Apr 11, 2023
·Updated
Microsoft Publisher Remote Code Execution Vulnerability
Affected Software
20 affected componentsFixes available
Microsoft Office 2019 for 32-bit editions
Microsoft Office LTSC 2021 for 64-bit editions
Microsoft Office 2019 for 64-bit editions
Microsoft Office LTSC 2021 for 32-bit editions
Microsoft Publisher 2013 RT
Microsoft Publisher 2016
Microsoft Publisher 2016
Microsoft Publisher 2013
Microsoft Publisher 2013
Microsoft Publisher 2013
Microsoft Publisher 2013
Microsoft Publisher 2016
Microsoft Publisher 2016
Microsoft 365 Apps for Enterprise
Microsoft 365 Apps for Enterprise
Microsoft 365 Apps
Microsoft Office=2019
Microsoft Office Long Term Servicing Channel=2021
Microsoft Publisher=2013-sp1
Microsoft Publisher=2016
Remediation
Event History
Apr 11, 2023
CVE Published
07:00 AM
Data Sourced
07:00 AM
DescriptionSeverityWeakness
Jun 17, 2023
CVE Published
via MITRE·12:29 AM
Data Sourced
via MITRE·12:29 AM
DescriptionSeverity
Frequently Asked Questions
1
What is CVE-2023-28295?
CVE-2023-28295 refers to the Microsoft Publisher Remote Code Execution Vulnerability.
2
How severe is CVE-2023-28295?
CVE-2023-28295 has a severity level of high.
3
Which software products are affected by CVE-2023-28295?
The affected software products include Microsoft Office 2019 for 64-bit editions, Microsoft 365 Apps for Enterprise, Microsoft Office LTSC 2021 for 64-bit editions, Microsoft Office LTSC 2021 for 32-bit editions, Microsoft Office 2019 for 32-bit editions, Microsoft Publisher 2013, Microsoft Publisher 2013 RT, Microsoft Publisher 2016.
4
How can I fix CVE-2023-28295?
To fix CVE-2023-28295, you can apply the relevant security updates provided by Microsoft for the affected software products.
5
Where can I find more information about CVE-2023-28295?
You can find more information about CVE-2023-28295 on the Microsoft Security Response Center website.