← Back

CVE-2025-30383

nvd nist
Published: May 13, 2025Modified: May 19, 2025

JSON object

Loading...
7.8
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: secure@microsoft.com (Secondary)

Description

Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

Affected (11)

5 products
365 Apps
Excel
Office
Office Online Server
Configuration A
11 vulnerable
Vulnerable SoftwareAffected Versions
Microsoft
All versions
All versions
Microsoft
Version 2016
Version 2016
Microsoft
Version 2019
Version 2019
Microsoft
Version 2021
Version 2021
Version 2024
Version 2024
Before 16.0.10417.20010

References (1)

Timeline

No history available yet.