CVE-2022-41031
CVSS 3.1 Score 7.8 of 10 (high)
Details
Published Oct 11, 2022
Updated: Jan 2, 2025
Summary
CVE-2022-41031 is a remote code execution vulnerability affecting Microsoft Word. Maliciously crafted documents can exploit this weakness, allowing attackers to execute arbitrary code on the targeted system. Successful exploitation could lead to significant security risks, including data theft, unauthorized system access, and further malware infections. Microsoft has released a patch to address the issue, and users are strongly encouraged to apply it promptly to mitigate potential threats.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Microsoft 365 Apps
- Microsoft Office Long Term Servicing Channel
- Microsoft Office 2019
- Microsoft Office 365
Affected Vendors
- Microsoft