Site icon API Security Blog

Security Updates for Microsoft Excel Products C2R (October 2021)

The Microsoft Excel Products are missing security updates.
It is, therefore, affected by multiple vulnerabilities :

– A remote code execution vulnerability. An attacker can exploit this to bypass authentication and execute unauthorized arbitrary commands. (CVE-2021-40474, CVE-2021-40485)

– An information disclosure vulnerability. An attacker can exploit this to disclose potentially sensitive information. (CVE-2021-40472)Read More

Exit mobile version