Microsoft Excel是美国微软(Microsoft)公司的一款Office套件中的电子表格处理软件。 Microsoft Excel存在资源管理错误漏洞。攻击者利用该漏洞可以执行代码。以下产品和版本受到影响:Office Online Server,Microsoft Office 2019 for 32-bit editions,Microsoft Office 2019 for 64-bit editions,Microsoft 365 Apps for Enterprise for 32-
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Microsoft | Microsoft 365 Apps for Enterprise | 16.0.1< https://aka.ms/OfficeSecurityReleases |
affected |
| Microsoft | Microsoft Excel 2016 | 16.0.0.0< 16.0.5548.1000 |
affected |
| Microsoft | Microsoft Office 2019 | 19.0.0< https://aka.ms/OfficeSecurityReleases |
affected |
| Microsoft | Microsoft Office LTSC 2021 | 16.0.1< https://aka.ms/OfficeSecurityReleases |
affected |
| Microsoft | Microsoft Office LTSC 2024 | 16.0.0< https://aka.ms/OfficeSecurityReleases |
affected |
| Microsoft | Microsoft Office LTSC for Mac 2021 | 16.0.1< 16.108.26041219 |
affected |
| Microsoft | Microsoft Office LTSC for Mac 2024 | 16.0.0< 16.108.26041219 |
affected |
| Microsoft | Office Online Server | 16.0.0.0< 16.0.10417.20113 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Microsoft | Microsoft 365 Apps for Enterprise | 16.0.1 ~ https://aka.ms/OfficeSecurityReleases | - |
|
| Microsoft | Microsoft Excel 2016 | 16.0.0.0 ~ 16.0.5548.1000 | - |
|
| Microsoft | Microsoft Office 2019 | 19.0.0 ~ https://aka.ms/OfficeSecurityReleases | - |
|
| Microsoft | Microsoft Office LTSC 2021 | 16.0.1 ~ https://aka.ms/OfficeSecurityReleases | - |
|
| Microsoft | Microsoft Office LTSC 2024 | 16.0.0 ~ https://aka.ms/OfficeSecurityReleases | - |
|
| Microsoft | Microsoft Office LTSC for Mac 2021 | 16.0.1 ~ 16.108.26041219 | - |
|
| Microsoft | Microsoft Office LTSC for Mac 2024 | 16.0.0 ~ 16.108.26041219 | - |
|
| Microsoft | Office Online Server | 16.0.0.0 ~ 16.0.10417.20113 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-33824 | 9.8 CRITICAL | Windows Internet Key Exchange (IKE) Service Extensions Remote Code Execution Vulnerability |
| CVE-2026-26149 | 9.0 CRITICAL | Microsoft Power Apps Desktop Client Spoofing Vulnerability |
| CVE-2026-33120 | 8.8 HIGH | Microsoft SQL Server Remote Code Execution Vulnerability |
| CVE-2026-26167 | 8.8 HIGH | Windows Push Notifications Elevation of Privilege Vulnerability |
| CVE-2026-26178 | 8.8 HIGH | Windows Advanced Rasterization Platform Elevation of Privilege Vulnerability |
| CVE-2026-32171 | 8.8 HIGH | Azure Logic Apps Elevation of Privilege Vulnerability |
| CVE-2026-32225 | 8.8 HIGH | Windows Shell Security Feature Bypass Vulnerability |
| CVE-2026-32157 | 8.8 HIGH | Remote Desktop Client Remote Code Execution Vulnerability |
| CVE-2026-27928 | 8.7 HIGH | Windows Hello Security Feature Bypass Vulnerability |
| CVE-2026-32221 | 8.4 HIGH | Windows Graphics Component Remote Code Execution Vulnerability |
| CVE-2026-32091 | 8.4 HIGH | Microsoft Brokering File System Elevation of Privilege Vulnerability |
| CVE-2026-32162 | 8.4 HIGH | Windows COM Elevation of Privilege Vulnerability |
| CVE-2026-32190 | 8.4 HIGH | Microsoft Office Remote Code Execution Vulnerability |
| CVE-2026-33115 | 8.4 HIGH | Microsoft Word Remote Code Execution Vulnerability |
| CVE-2026-33114 | 8.4 HIGH | Microsoft Word Remote Code Execution Vulnerability |
| CVE-2026-33827 | 8.1 HIGH | Windows TCP/IP Remote Code Execution Vulnerability |
| CVE-2026-27912 | 8.0 HIGH | Windows Kerberos Elevation of Privilege Vulnerability |
| CVE-2026-33826 | 8.0 HIGH | Windows Active Directory Remote Code Execution Vulnerability |
| CVE-2026-27907 | 7.8 HIGH | Windows Storage Spaces Controller Elevation of Privilege Vulnerability |
| CVE-2026-33095 | 7.8 HIGH | Microsoft Word Remote Code Execution Vulnerability |
Showing top 20 of 163 CVEs. View all on vendor page → →
No comments yet