CVE-2023-35372: Microsoft Office Visio Remote Code Execution Vulnerability
Microsoft Office Visio Remote Code Execution Vulnerability
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in https://aka.ms/OfficeSecurityReleases - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 5439.1000Patch KB5002565
Event History
Frequently Asked Questions
What is CVE-2023-35372?
CVE-2023-35372 is a Microsoft Office Visio Remote Code Execution Vulnerability.
What software is affected by CVE-2023-35372?
Microsoft Office 365 Apps for Enterprise (x86 and x86_64), Microsoft Office 2019 (32-bit and 64-bit editions), Microsoft Office LTSC 2021 (32-bit and 64-bit editions), and Microsoft Office LTSC for Mac 2021 are affected by CVE-2023-35372.
What is the severity of CVE-2023-35372?
CVE-2023-35372 has a severity rating of 7.8 (high).
How can I fix CVE-2023-35372?
You can fix CVE-2023-35372 by applying the security updates provided by Microsoft. Please refer to the Microsoft Office security updates documentation for more information.
Where can I find more information about CVE-2023-35372?
You can find more information about CVE-2023-35372 on the Microsoft Security Response Center website.