CVE-2023-36565
CVSS 3.1 Score 7.0 of 10 (high)
Details
Published Oct 10, 2023
Updated: May 29, 2024
CWE ID 416
Summary
CVE-2023-36565 is a newly disclosed vulnerability affecting Microsoft Office. This Elevation of Privilege (EoP) issue allows an attacker to manipulate specially crafted Office files to gain heightened access to a system. Successful exploitation could allow the attacker to install unauthorized software, view, modify, or delete data, and potentially take control of the affected system. Users are advised to apply the latest patches provided by Microsoft to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Products
- Microsoft Office
Affected Vendors
- Microsoft