Kaspersky ID:
KLA91209
Дата обнаружения:
11/08/2026
Обновлено:
17/08/2026

Описание

Multiple vulnerabilities were found in Microsoft Office. Malicious users can exploit these vulnerabilities to bypass security restrictions, execute arbitrary code, gain privileges, obtain sensitive information, spoof user interface.

Below is a complete list of vulnerabilities:

  1. A spoofing vulnerability in Microsoft Office SharePoint can be exploited remotely to spoof user interface.
  2. A spoofing vulnerability in Microsoft SharePoint Server can be exploited remotely to spoof user interface.
  3. A remote code execution vulnerability in Microsoft Word can be exploited remotely to execute arbitrary code.
  4. An elevation of privilege vulnerability in Microsoft SharePoint Server can be exploited remotely to gain privileges.
  5. An information disclosure vulnerability in Microsoft SharePoint Server can be exploited remotely to obtain sensitive information.
  6. An information disclosure vulnerability in Microsoft Office Graphics Component can be exploited remotely to obtain sensitive information.
  7. A spoofing vulnerability in Microsoft Outlook can be exploited remotely to spoof user interface.
  8. A tampering vulnerability in Microsoft SharePoint Server can be exploited remotely to spoof user interface.
  9. A remote code execution vulnerability in Microsoft Office Graphics Component can be exploited remotely to execute arbitrary code.
  10. A remote code execution vulnerability in Microsoft SharePoint Server can be exploited remotely to execute arbitrary code.
  11. A remote code execution vulnerability in Microsoft Office can be exploited remotely to execute arbitrary code.
  12. A remote code execution vulnerability in Microsoft Office Word can be exploited remotely to execute arbitrary code.
  13. An information disclosure vulnerability in Microsoft Office Word can be exploited remotely to obtain sensitive information.
  14. An information disclosure vulnerability in Microsoft Office can be exploited remotely to obtain sensitive information.
  15. A remote code execution vulnerability in Microsoft Access can be exploited remotely to execute arbitrary code.
  16. An elevation of privilege vulnerability in Microsoft OneDrive for MacOS can be exploited remotely to gain privileges.
  17. A spoofing vulnerability in Microsoft Teams for Android and iOS can be exploited remotely to spoof user interface.
  18. A remote code execution vulnerability in Microsoft Teams can be exploited remotely to execute arbitrary code.
  19. An information disclosure vulnerability in Microsoft Teams iOS can be exploited remotely to obtain sensitive information.
  20. A remote code execution vulnerability in Microsoft Excel can be exploited remotely to execute arbitrary code.
  21. An elevation of privilege vulnerability in Microsoft Office can be exploited remotely to gain privileges.
  22. An information disclosure vulnerability in Microsoft Excel can be exploited remotely to obtain sensitive information.
  23. An information disclosure vulnerability in Powerpoint can be exploited remotely to obtain sensitive information.
  24. An information disclosure vulnerability in Microsoft Word can be exploited remotely to obtain sensitive information.
  25. A remote code execution vulnerability in Microsoft PowerPoint can be exploited remotely to obtain sensitive information.
  26. A remote code execution vulnerability in Microsoft SharePoint can be exploited remotely to execute arbitrary code.
  27. An elevation of privilege vulnerability in Microsoft SharePoint can be exploited remotely to gain privileges.
  28. A remote code execution vulnerability in Microsoft Outlook can be exploited remotely to execute arbitrary code.

Первичный источник обнаружения

Эксплуатация

Malware exists for this vulnerability. Usually such malware is classified as Exploit. More details.

Связанные продукты

Список CVE

  • CVE-2026-57105
    unknown
  • CVE-2026-58639
    high
  • CVE-2026-58651
    critical
  • CVE-2026-62827
    critical
  • CVE-2026-62829
    unknown
  • CVE-2026-62837
    unknown
  • CVE-2026-62839
    high
  • CVE-2026-62842
    high
  • CVE-2026-62882
    warning
  • CVE-2026-62917
    warning
  • CVE-2026-63512
    high
  • CVE-2026-63513
    critical
  • CVE-2026-63514
    critical
  • CVE-2026-63515
    critical
  • CVE-2026-63516
    high
  • CVE-2026-63517
    high
  • CVE-2026-63518
    critical
  • CVE-2026-63519
    critical
  • CVE-2026-63520
    critical
  • CVE-2026-63521
    high
  • CVE-2026-63524
    high
  • CVE-2026-63525
    critical
  • CVE-2026-63526
    critical
  • CVE-2026-63527
    critical
  • CVE-2026-63528
    high
  • CVE-2026-63529
    high
  • CVE-2026-63530
    high
  • CVE-2026-63531
    high
  • CVE-2026-63532
    critical
  • CVE-2026-63533
    critical
  • CVE-2026-64897
    unknown
  • CVE-2026-64898
    critical
  • CVE-2026-64899
    high
  • CVE-2026-64900
    high
  • CVE-2026-64901
    unknown
  • CVE-2026-64902
    unknown
  • CVE-2026-64903
    critical
  • CVE-2026-64904
    critical
  • CVE-2026-64905
    critical
  • CVE-2026-64906
    critical
  • CVE-2026-64907
    critical
  • CVE-2026-64908
    critical
  • CVE-2026-64909
    critical
  • CVE-2026-64910
    critical
  • CVE-2026-64911
    critical
  • CVE-2026-64912
    critical
  • CVE-2026-64914
    critical
  • CVE-2026-64915
    critical
  • CVE-2026-64916
    high
  • CVE-2026-64917
    high
  • CVE-2026-64919
    critical
  • CVE-2026-64920
    critical
  • CVE-2026-64921
    critical
  • CVE-2026-64922
    high
  • CVE-2026-65656
    critical
  • CVE-2026-65657
    critical
  • CVE-2026-65658
    critical
  • CVE-2026-65660
    high
  • CVE-2026-65661
    critical
  • CVE-2026-65663
    critical
  • CVE-2026-65664
    critical
  • CVE-2026-65665
    critical
  • CVE-2026-65767
    critical
  • CVE-2026-65768
    critical
  • CVE-2026-65769
    critical
  • CVE-2026-65807
    critical
  • CVE-2026-66805
    critical
  • CVE-2026-66806
    high
  • CVE-2026-66807
    critical
  • CVE-2026-66808
    critical
  • CVE-2026-66809
    high
  • CVE-2026-66810
    high
  • CVE-2026-68792
    critical
  • CVE-2026-68793
    critical
  • CVE-2026-68794
    critical
  • CVE-2026-68795
    critical
  • CVE-2026-68796
    critical
  • CVE-2026-68797
    high
  • CVE-2026-68798
    critical
  • CVE-2026-68799
    high
  • CVE-2026-68800
    critical
  • CVE-2026-68801
    critical
  • CVE-2026-68802
    high
  • CVE-2026-68803
    critical
  • CVE-2026-68804
    critical
  • CVE-2026-68805
    critical
  • CVE-2026-68806
    critical
  • CVE-2026-68807
    critical
  • CVE-2026-68808
    high
  • CVE-2026-68809
    high
  • CVE-2026-68810
    critical
  • CVE-2026-68811
    critical
  • CVE-2026-68812
    critical
  • CVE-2026-68813
    high
  • CVE-2026-68814
    critical
  • CVE-2026-68815
    critical
  • CVE-2026-68816
    critical
  • CVE-2026-68817
    critical
  • CVE-2026-70130
    critical
  • CVE-2026-70306
    critical
  • CVE-2026-70310
    high
  • CVE-2026-70311
    critical
  • CVE-2026-70312
    high
  • CVE-2026-70313
    critical
  • CVE-2026-70314
    high
  • CVE-2026-70315
    high
  • CVE-2026-70316
    high
  • CVE-2026-70317
    high
  • CVE-2026-70318
    high
  • CVE-2026-70319
    high
  • CVE-2026-70320
    high
  • CVE-2026-70321
    critical
  • CVE-2026-70322
    high
  • CVE-2026-70323
    high
  • CVE-2026-70324
    critical
  • CVE-2026-70325
    high
  • CVE-2026-70326
    critical
  • CVE-2026-70327
    high
  • CVE-2026-70328
    high
  • CVE-2026-70329
    critical
  • CVE-2026-70355
    critical
  • CVE-2026-65680
    high

Список KB

Смотрите также

Узнай статистику распространения уязвимостей в своем регионе statistics.securelist.com

Нашли неточность в описании этой уязвимости? Дайте нам знать!
Kaspersky IT Security Calculator:
Оцените ваш профиль кибербезопасности
Узнать больше
Встречай новый Kaspersky!
Каждая минута твоей онлайн-жизни заслуживает топовой защиты.
Узнать больше
Do you want to save your changes?
Your message has been sent successfully.