← Back

CVE-2026-62804

nvd nist
Published: Sep 8, 2026Modified: Sep 8, 2026

JSON object

Loading...
7.8
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: secure@microsoft.com (Secondary)

Description

External control of file name or path in Microsoft Office Word allows an unauthorized attacker to execute code locally.

Affected (12)

6 products
365 Apps
Microsoft 365
Office 2016
Office 2019
Office 2021
Office 2024
Configuration A
12 vulnerable
Vulnerable SoftwareAffected Versions
Microsoft
All versions
All versions
All versions
Microsoft
All versions
All versions
Microsoft
All versions
All versions
Microsoft
All versions
All versions
All versions
Microsoft
All versions
All versions

References (1)

Source: secure@microsoft.com
PatchVendor Advisory

Timeline

No history available yet.