ZeroHour

CVE-2025-47994

CVSS 3.1
8.6 high
EPSS
3%p86
Published
()
Modified
Description

Deserialization of untrusted data in Microsoft Office allows an unauthorized attacker to elevate privileges locally.

Vendors
microsoft
Products
365 apps, office, office long term servicing channel, sharepoint enterprise server
Weakness
CWE-502
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.