CVE-2022-41106

Microsoft Excel Remote Code Execution Vulnerability
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:microsoft:365_apps:-:*:*:*:enterprise:*:*:*
cpe:2.3:a:microsoft:excel:2013:sp1:*:*:*:*:*:*
cpe:2.3:a:microsoft:excel:2013:sp1:*:*:rt:*:*:*
cpe:2.3:a:microsoft:excel:2016:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:office:2019:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:office:2021:*:*:*:ltsc:*:*:*
cpe:2.3:a:microsoft:office_online_server:-:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:office_web_apps_server:2013:sp1:*:*:*:*:*:*

History

11 Apr 2023, 21:15

Type Values Removed Values Added
Summary Microsoft Excel Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-41063. Microsoft Excel Remote Code Execution Vulnerability
CVSS v2 : unknown
v3 : 7.8
v2 : unknown
v3 : 8.8
References
  • {'url': 'https://www.talosintelligence.com/vulnerability_reports/TALOS-2022-1591', 'name': 'https://www.talosintelligence.com/vulnerability_reports/TALOS-2022-1591', 'tags': ['Exploit', 'Third Party Advisory'], 'refsource': 'MISC'}
  • {'url': 'https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2022-41106', 'name': 'https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2022-41106', 'tags': ['Patch', 'Vendor Advisory'], 'refsource': 'MISC'}
  • (MISC) https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-41106 -

20 Jan 2023, 14:36

Type Values Removed Values Added
References (MISC) https://www.talosintelligence.com/vulnerability_reports/TALOS-2022-1591 - (MISC) https://www.talosintelligence.com/vulnerability_reports/TALOS-2022-1591 - Exploit, Third Party Advisory

15 Nov 2022, 23:15

Type Values Removed Values Added
References
  • (MISC) https://www.talosintelligence.com/vulnerability_reports/TALOS-2022-1591 -

14 Nov 2022, 19:47

Type Values Removed Values Added
First Time Microsoft office Online Server
Microsoft office Web Apps Server
Microsoft excel
Microsoft 365 Apps
Microsoft office
Microsoft
CWE NVD-CWE-noinfo
CPE cpe:2.3:a:microsoft:office_web_apps_server:2013:sp1:*:*:*:*:*:*
cpe:2.3:a:microsoft:excel:2016:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:office_online_server:-:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:office:2021:*:*:*:ltsc:*:*:*
cpe:2.3:a:microsoft:excel:2013:sp1:*:*:rt:*:*:*
cpe:2.3:a:microsoft:office:2019:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:365_apps:-:*:*:*:enterprise:*:*:*
cpe:2.3:a:microsoft:excel:2013:sp1:*:*:*:*:*:*
References (MISC) https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2022-41106 - (MISC) https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2022-41106 - Patch, Vendor Advisory

10 Nov 2022, 00:33

Type Values Removed Values Added
New CVE

Information

Published : 2022-11-09 22:15

Updated : 2023-12-10 14:35


NVD link : CVE-2022-41106

Mitre link : CVE-2022-41106

CVE.ORG link : CVE-2022-41106


JSON object : View

Products Affected

microsoft

  • office_online_server
  • office
  • 365_apps
  • office_web_apps_server
  • excel