← Back

CVE-2026-45458

nvd nist
Published: Jun 9, 2026Modified: Jun 11, 2026

JSON object

Loading...
8.4
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 2.5 / Impact: 5.9
Source: secure@microsoft.com

Description

Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally.

Affected (16)

7 products
365 Apps
Microsoft 365
Office 2019
Office 2021
Office 2024
Sharepoint Server
Word
Configuration A
16 vulnerable
Vulnerable SoftwareAffected Versions
Microsoft
All versions
All versions
All versions
Microsoft
All versions
All versions
Microsoft
All versions
All versions
All versions
Microsoft
All versions
All versions
All versions
Microsoft
Before 16.0.19725.20384
Version 2016
Version 2019
Microsoft
Version 2016
Version 2016

References (1)

Timeline

No history available yet.