You are using an out of date browser. It may not display this or other websites correctly. You should upgrade or use an alternative browser.
cve-2025-49697
About this tag
CVE-2025-49697 is a heap-based buffer overflow vulnerability affecting Microsoft Office that could allow an unauthorized local attacker to execute arbitrary code. This critical remote code execution flaw poses a serious risk, as successful exploitation may enable an attacker to run code with elevated privileges. The official Microsoft Security Response Center page for this CVE may not yet display full public details, as it might still be under publication. WindowsForum.com discussions cover the vulnerability's impact, potential attack vectors, and mitigation strategies for enterprise IT and security professionals managing Microsoft Office deployments.
It appears that the official Microsoft Security Response Center (MSRC) page for CVE-2025-49697 is currently not showing specific public details, possibly because it is still in the process of being published or updated.
Here’s what is widely known about CVE-2025-49697, based on available sources...