CVE-2025-49756: Office Developer Platform Security Feature Bypass Vulnerability
Office Developer Platform Security Feature Bypass Vulnerability
Other sources
Use of a broken or risky cryptographic algorithm in Office Developer Platform allows an authorized attacker to bypass a security feature locally.
— Microsoft
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-49756?
CVE-2025-49756 is classified as a security feature bypass vulnerability that can allow attackers to exploit broken or risky cryptographic algorithms.
How do I fix CVE-2025-49756?
To fix CVE-2025-49756, ensure that you apply the latest security updates for Microsoft 365 Apps for Enterprise.
Which products are affected by CVE-2025-49756?
CVE-2025-49756 affects Microsoft 365 Apps for Enterprise on both x86_64 and x86 architectures.
Can CVE-2025-49756 be exploited by unauthorized users?
No, CVE-2025-49756 allows authorized attackers to exploit the vulnerability locally.
What kind of vulnerabilities does CVE-2025-49756 relate to?
CVE-2025-49756 relates to the use of broken or risky cryptographic algorithms in the Office Developer Platform.