CVE-2022-30174

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Jun 15, 2022
Updated: Jan 2, 2025

Summary

CVE-2022-30174 is a remote code execution vulnerability affecting Microsoft Office. Attackers can exploit this issue by crafting a specially crafted Office file to execute malicious code on a victim's system when the file is opened. Successful exploitation of this vulnerability could lead to significant security risks, including unauthorized access or data theft. Microsoft strongly recommends that users apply the available patches as soon as possible to protect against potential attacks. This vulnerability underscores the importance of keeping software up to date and being cautious when opening untrusted email attachments or files from unknown sources.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Microsoft Office Long Term Servicing Channel
  • Microsoft 365 Apps
  • Microsoft Office 365

Affected Vendors

  • Microsoft