CVE-2023-36896: Microsoft Excel Remote Code Execution Vulnerability
Microsoft Excel Remote Code Execution Vulnerability
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 15.0.5579.1001Patch KB5002451 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in https://aka.ms/OfficeSecurityReleases - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 16.76.23081101 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 16.0.5408.1002Patch KB5002463 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 16.0.10401.20022Patch KB5002435
Event History
Frequently Asked Questions
What is CVE-2023-36896?
CVE-2023-36896 is a Microsoft Excel Remote Code Execution Vulnerability.
Which software is affected by CVE-2023-36896?
CVE-2023-36896 affects Microsoft Office 365 Apps for Enterprise, Microsoft Office 2019, Microsoft Office LTSC 2021, Microsoft Excel 2013 RT, Microsoft Office for Mac 2021, and Microsoft Office Online Server.
What is the severity of CVE-2023-36896?
CVE-2023-36896 has a severity rating of 7.8, which is considered high.
How can I fix CVE-2023-36896?
To fix CVE-2023-36896, you should apply the security updates provided by Microsoft for the affected software.
Where can I find more information about CVE-2023-36896?
You can find more information about CVE-2023-36896 on the Microsoft Security Response Center website.