4.4
CVE-2026-41100
- EPSS 0.04%
- Veröffentlicht 12.05.2026 16:58:53
- Zuletzt bearbeitet 16.05.2026 01:49:18
- Quelle secure@microsoft.com
- CVE-Watchlists
- Unerledigt
Microsoft 365 Copilot for Android Spoofing Vulnerability
Improper access control in M365 Copilot allows an authorized attacker to perform spoofing locally.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ 365 Copilot SwPlatformandroid Version < 16.0.19822.20190
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.04% | 0.108 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| secure@microsoft.com | 4.4 | 1.8 | 2.5 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N
|
CWE-284 Improper Access Control
The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.