CVE-2023-21715

CVSS 3.1 Score 7.3 of 10 (high)

Details

Published Feb 14, 2023
Updated: Jan 1, 2025
CWE ID 863

Summary

CVE-2023-21715 is a security vulnerability affecting Microsoft Publisher. Hackers can exploit this issue to bypass security features, potentially gaining unauthorized access to a victim's system. The exact nature of the bypass technique is not yet clear, but it may allow an attacker to introduce and run malicious code. This vulnerability poses a significant risk to users who rely on Microsoft Publisher for creating and editing publications, as it can be used to compromise their systems without their knowledge. Microsoft is working on a patch to address this issue, and users are advised to apply it as soon as it becomes available to protect their systems from potential attacks.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Microsoft 365 Apps
  • Microsoft Office 365

Affected Vendors

  • Microsoft