Versio.io

CVE-2022-26901

Common vulnerabilities & exposures (CVE)

CVE databaseCVE database blogpostRelease & EoL database
 
Published at: - 15-04-2022 09:15
Last modified: - 26-04-2022 03:34
Total changes: - 3

Description

Microsoft Excel Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-24473.

Common Vulnerability Scoring System (CVSS)

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Low
Attack complexity
Local
Attack vector
High
Availability
High
Confidentiality
High
Integrity
None
Privileges required
Unchanged
Scope
Required
User interaction
7.8
Base score
1.8
5.9
Exploitability score
Impact score
 

Verification logic

OR
vendor=microsoft AND product=365_apps AND version=- AND software_edition=enterprise
vendor=microsoft AND product=excel AND version=2013 AND update=sp1 AND software_edition=-
vendor=microsoft AND product=excel AND version=2016
vendor=microsoft AND product=excel_rt AND version=2013 AND update=sp1
vendor=microsoft AND product=office AND version=2013 AND update=sp1
vendor=microsoft AND product=office AND version=2013_rt AND update=sp1
vendor=microsoft AND product=office AND version=2016
vendor=microsoft AND product=office AND version=2019 AND target_software=macos
vendor=microsoft AND product=office AND version=2021 AND software_edition=ltsc
vendor=microsoft AND product=office AND version=2021 AND software_edition=ltsc AND target_software=macos
vendor=microsoft AND product=office_online_server AND version=-
vendor=microsoft AND product=office_web_apps_server AND version=2013 AND update=sp1
 

Reference

  • N/A-Patch, Vendor Advisory
 


Keywords

NVD

 

CVE-2022-26901

 

CVE

 

Common vulnerabilities & exposures

 

CVSS

 

Common vulnerability scoring system

 

Security

 

Vulnerabilities

 

Exposures

 

We use cookies to ensure that we give you the best experience on our website. Read privacy policies for more information.