2 results (0.005 seconds)

CVSS: 7.1EPSS: 0%CPEs: 1EXPL: 0

18 Dec 2024 — A library injection vulnerability exists in Microsoft Word 16.83 for macOS. A specially crafted library can leverage Word's access privileges, leading to a permission bypass. A malicious application could inject a library and start the program to trigger this vulnerability and then make use of the vulnerable application's permissions. Existe una vulnerabilidad de inyección de librería en Microsoft Word 16.83 para macOS. Una librería especialmente manipulada puede aprovechar los privilegios de acceso de Word... • https://talosintelligence.com/vulnerability_reports/TALOS-2024-1977 • CWE-347: Improper Verification of Cryptographic Signature •

CVSS: 9.1EPSS: 0%CPEs: 11EXPL: 0

21 Jul 2001 — Microsoft Word 2002 and earlier allows attackers to automatically execute macros without warning the user by embedding the macros in a manner that escapes detection by the security scanner. • http://marc.info/?l=bugtraq&m=99325144322224&w=2 •