Microsoft Word是美国微软(Microsoft)公司的一套Office套件中的文字处理软件。 Microsoft Word存在资源管理错误漏洞。攻击者利用该漏洞可以远程执行代码。以下产品和版本受到影响:Microsoft Office 2019 for 32-bit editions,Microsoft Office 2019 for 64-bit editions,Microsoft 365 Apps for Enterprise for 32-bit Systems,Microsoft 3
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Microsoft | Microsoft 365 Apps for Enterprise | 16.0.1 ~ https://aka.ms/OfficeSecurityReleases | - |
|
| Microsoft | Microsoft Office 2019 | 19.0.0 ~ https://aka.ms/OfficeSecurityReleases | - |
|
| Microsoft | Microsoft Office LTSC 2021 | 16.0.1 ~ https://aka.ms/OfficeSecurityReleases | - |
|
| Microsoft | Microsoft Office LTSC 2024 | 16.0.0 ~ https://aka.ms/OfficeSecurityReleases | - |
|
| Microsoft | Microsoft Office LTSC for Mac 2021 | 16.0.1 ~ 16.95.25030928 | - |
|
| Microsoft | Microsoft Office LTSC for Mac 2024 | 16.0.0 ~ 16.95.25030928 | - |
|
| Microsoft | Microsoft Word 2016 | 16.0.1 ~ 16.0.18526.20080 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-26645 | 8.8 HIGH | Remote Desktop Client Remote Code Execution Vulnerability |
| CVE-2025-24056 | 8.8 HIGH | Windows Telephony Service Remote Code Execution Vulnerability |
| CVE-2025-24051 | 8.8 HIGH | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
| CVE-2025-24084 | 8.4 HIGH | Windows Subsystem for Linux (WSL2) Kernel Remote Code Execution Vulnerability |
| CVE-2025-24049 | 8.4 HIGH | Azure Command Line Integration (CLI) Elevation of Privilege Vulnerability |
| CVE-2025-24035 | 8.1 HIGH | Windows Remote Desktop Services Remote Code Execution Vulnerability |
| CVE-2025-24064 | 8.1 HIGH | Windows Domain Name Service Remote Code Execution Vulnerability |
| CVE-2025-24045 | 8.1 HIGH | Windows Remote Desktop Services Remote Code Execution Vulnerability |
| CVE-2025-24081 | 7.8 HIGH | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2025-24080 | 7.8 HIGH | Microsoft Office Remote Code Execution Vulnerability |
| CVE-2025-24067 | 7.8 HIGH | Kernel Streaming Service Driver Elevation of Privilege Vulnerability |
| CVE-2025-24066 | 7.8 HIGH | Kernel Streaming Service Driver Elevation of Privilege Vulnerability |
| CVE-2025-24059 | 7.8 HIGH | Windows Common Log File System Driver Elevation of Privilege Vulnerability |
| CVE-2025-24061 | 7.8 HIGH | Windows Mark of the Web Security Feature Bypass Vulnerability |
| CVE-2025-24046 | 7.8 HIGH | Kernel Streaming Service Driver Elevation of Privilege Vulnerability |
| CVE-2025-24048 | 7.8 HIGH | Windows Hyper-V Elevation of Privilege Vulnerability |
| CVE-2025-24050 | 7.8 HIGH | Windows Hyper-V Elevation of Privilege Vulnerability |
| CVE-2025-24985 | 7.8 HIGH | Windows Fast FAT File System Driver Remote Code Execution Vulnerability |
| CVE-2025-24993 | 7.8 HIGH | Windows NTFS Remote Code Execution Vulnerability |
| CVE-2025-24044 | 7.8 HIGH | Windows Win32 Kernel Subsystem Elevation of Privilege Vulnerability |
Showing top 20 of 57 CVEs. View all on vendor page → →
No comments yet