CNNVD-202601-4359 Information

CNNVD ID

CNNVD-202601-4359

CVE-2026-21509

  • CNNVD Published: 2026-01-26

Description (Chinese)

Microsoft Office是美国微软(Microsoft)公司的一款办公软件套件产品。该产品常用组件包括Word、Excel、Access、Powerpoint、FrontPage等。 Microsoft Office存在安全漏洞,该漏洞源于安全决策依赖不可信输入,可能导致本地攻击者绕过安全功能。

Description (English)

Microsoft Office is an office software package product for Microsoft (USA). Common components of the product include Word, Excel, Access, PowerPoint, FrontPage, etc. Microsoft Office has a security loophole, which stems from the reliance on untrustworthy inputs for security decision-making, which may lead local attackers to bypass security functions.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

微软

Published

2026-01-26

Last Modified

2026-02-24

References

https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-21509 https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-21509

Patch

https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-21509

Share on: