7.8
CVE-2025-53759
- EPSS 0.52%
- Veröffentlicht 12.08.2025 17:09:47
- Zuletzt bearbeitet 15.08.2025 17:16:38
- Erkennungen
Microsoft Excel Remote Code Execution Vulnerability
Use of uninitialized resource in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ Office Long Term Servicing Channel Version 2021 SwPlatform - HwPlatform x64
Microsoft ≫ Office Long Term Servicing Channel Version 2021 SwPlatform - HwPlatform x86
Microsoft ≫ Office Long Term Servicing Channel Version 2021 SwPlatform macos
Microsoft ≫ Office Long Term Servicing Channel Version 2024 SwPlatform - HwPlatform x64
Microsoft ≫ Office Long Term Servicing Channel Version 2024 SwPlatform - HwPlatform x86
Microsoft ≫ Office Long Term Servicing Channel Version 2024 SwPlatform macos
Microsoft ≫ Office Online Server Version -
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.52% | 0.409 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| Microsoft | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
|
CWE-908 Use of Uninitialized Resource
The product uses or accesses a resource that has not been initialized.
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-53759