7.8
CVE-2026-55949
- EPSS 0.3%
- Veröffentlicht 14.07.2026 17:09:12
- Zuletzt bearbeitet 15.07.2026 16:22:11
- CVE-Watchlists
- Unerledigt
Microsoft Excel Remote Code Execution Vulnerability
Use of uninitialized resource in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ Microsoft 365 Version- SwPlatformmacos
Microsoft ≫ Office 2019 Version- HwPlatformx64
Microsoft ≫ Office 2019 Version- HwPlatformx86
Microsoft ≫ Office 2021 Version- SwEditionltsc SwPlatform- HwPlatformx64
Microsoft ≫ Office 2021 Version- SwEditionltsc SwPlatform- HwPlatformx86
Microsoft ≫ Office 2021 Version- SwEditionltsc SwPlatformmacos HwPlatform-
Microsoft ≫ Office 2024 Version- SwEditionltsc SwPlatform- HwPlatformx64
Microsoft ≫ Office 2024 Version- SwEditionltsc SwPlatform- HwPlatformx86
Microsoft ≫ Office 2024 Version- SwEditionltsc SwPlatformmacos HwPlatform-
Microsoft ≫ Office Online Server Version < 16.0.10417.20175
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.3% | 0.222 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| Microsoft | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
|
CWE-908 Use of Uninitialized Resource
The product uses or accesses a resource that has not been initialized.
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-55949