Description
Multiple vulnerabilities were found in Microsoft Office. Malicious users can exploit these vulnerabilities to execute arbitrary code, gain privileges, obtain sensitive information, spoof user interface, bypass security restrictions.
Below is a complete list of vulnerabilities:
- A remote code execution vulnerability in Microsoft PowerPoint can be exploited remotely to execute arbitrary code.
- An elevation of privilege vulnerability in Microsoft Teams can be exploited remotely to gain privileges.
- A remote code execution vulnerability in Microsoft Office can be exploited remotely to execute arbitrary code.
- A remote code execution vulnerability in Microsoft Word can be exploited remotely to execute arbitrary code.
- A remote code execution vulnerability in Microsoft Excel can be exploited remotely to execute arbitrary code.
- An information disclosure vulnerability in Microsoft Excel can be exploited remotely to obtain sensitive information.
- A remote code execution vulnerability in Microsoft SharePoint can be exploited remotely to execute arbitrary code.
- An elevation of privilege vulnerability in Microsoft Office can be exploited remotely to gain privileges.
- A spoofing vulnerability in Microsoft SharePoint Server can be exploited remotely to spoof user interface.
- A security feature bypass vulnerability in Office Developer Platform can be exploited remotely to bypass security restrictions.
Original advisories
- CVE-2025-49731
- CVE-2025-49702
- CVE-2025-49700
- CVE-2025-49711
- CVE-2025-49699
- CVE-2025-48812
- CVE-2025-49695
- CVE-2025-49696
- CVE-2025-49704
- CVE-2025-49701
- CVE-2025-47994
- CVE-2025-49697
- CVE-2025-49703
- CVE-2025-49737
- CVE-2025-49706
- CVE-2025-49698
- CVE-2025-49756
Related products
- Microsoft-Office
- Microsoft-Outlook
- Microsoft-Excel
- Microsoft-Word
- Microsoft-SharePoint
- Microsoft-Teams-for-Desktop
CVE list
- CVE-2025-49705 critical
- CVE-2025-49731 warning
- CVE-2025-49702 critical
- CVE-2025-49700 critical
- CVE-2025-49711 critical
- CVE-2025-49699 high
- CVE-2025-48812 high
- CVE-2025-49695 critical
- CVE-2025-49696 critical
- CVE-2025-49704 critical
- CVE-2025-49701 critical
- CVE-2025-47994 critical
- CVE-2025-49697 critical
- CVE-2025-49703 critical
- CVE-2025-49737 high
- CVE-2025-49706 high
- CVE-2025-49698 critical
- CVE-2025-49756 warning
KB list
- 5002742
- 5002655
- 5002744
- 5002747
- 4464583
- 5002749
- 5002745
- 5002739
- 5002734
- 5002746
- 5001941
- 5002740
- 5002741
- 5002751
- 5002743
Read more
Find out the statistics of the vulnerabilities spreading in your region on statistics.securelist.com
Found an inaccuracy in the description of this vulnerability? Let us know!