ZeroHour

CVE-2025-54906

CVSS 3.1
7.8 high
EPSS
<1%p51
Published
()
Modified
Description

Free of memory not on the heap in Microsoft Office allows an unauthorized attacker to execute code locally.

Vendors
microsoft
Products
365 apps, office, office long term servicing channel, sharepoint server
Weakness
CWE-416
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.