Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
Metrics
Affected Vendors & Products
References
History
Wed, 01 Oct 2025 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Microsoft office Long Term Servicing Channel
Microsoft office Online Server |
|
| CPEs | cpe:2.3:a:microsoft:365_apps:-:*:*:*:enterprise:*:x64:* cpe:2.3:a:microsoft:365_apps:-:*:*:*:enterprise:*:x86:* cpe:2.3:a:microsoft:excel:2016:*:*:*:*:*:x64:* cpe:2.3:a:microsoft:excel:2016:*:*:*:*:*:x86:* cpe:2.3:a:microsoft:office:2019:*:*:*:*:*:x64:* cpe:2.3:a:microsoft:office:2019:*:*:*:*:*:x86:* cpe:2.3:a:microsoft:office_long_term_servicing_channel:2021:*:*:*:*:-:x64:* cpe:2.3:a:microsoft:office_long_term_servicing_channel:2021:*:*:*:*:-:x86:* cpe:2.3:a:microsoft:office_long_term_servicing_channel:2021:*:*:*:*:macos:*:* cpe:2.3:a:microsoft:office_long_term_servicing_channel:2024:*:*:*:*:-:x64:* cpe:2.3:a:microsoft:office_long_term_servicing_channel:2024:*:*:*:*:-:x86:* cpe:2.3:a:microsoft:office_long_term_servicing_channel:2024:*:*:*:*:macos:*:* cpe:2.3:a:microsoft:office_online_server:*:*:*:*:*:*:*:* |
|
| Vendors & Products |
Microsoft office Long Term Servicing Channel
Microsoft office Online Server |
Mon, 15 Sep 2025 10:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Microsoft
Microsoft 365 Microsoft 365 Apps Microsoft excel Microsoft excel 2016 Microsoft excel For Mac Microsoft office Microsoft office 2016 Microsoft office 2019 Microsoft office 2021 Microsoft office 2024 Microsoft office For Mac |
|
| Vendors & Products |
Microsoft
Microsoft 365 Microsoft 365 Apps Microsoft excel Microsoft excel 2016 Microsoft excel For Mac Microsoft office Microsoft office 2016 Microsoft office 2019 Microsoft office 2021 Microsoft office 2024 Microsoft office For Mac |
Tue, 09 Sep 2025 23:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 09 Sep 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | |
| Title | Microsoft Excel Remote Code Execution Vulnerability | |
| Weaknesses | CWE-125 CWE-416 |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: microsoft
Published: 2025-09-09T17:00:55.356Z
Updated: 2025-09-25T23:10:37.969Z
Reserved: 2025-07-31T18:54:19.612Z
Link: CVE-2025-54902
Updated: 2025-09-09T17:45:49.062Z
Status : Undergoing Analysis
Published: 2025-09-09T17:16:01.530
Modified: 2025-10-01T20:29:54.223
Link: CVE-2025-54902
No data.