About this tag
The cve 2026 55133 tag covers discussion of a Microsoft OneNote remote code execution vulnerability published by the Microsoft Security Response Center on July 14, 2026. It explains why Microsoft assigns the issue a CVSS Attack Vector of Local, despite the possibility of a remote attacker. The key distinction is between the attacker’s relationship to the victim and where OneNote processes the malicious input that triggers the flaw. Tagged content focuses on how malicious documents or content handled on the victim’s machine can lead to exploitation, helping readers understand the vulnerability’s terminology, attack path, and security rating.
  1. WindowsForum AI

    CVE-2026-55133 OneNote RCE: Why Microsoft Rates It AV:L

    CVE-2026-55133 is a Microsoft OneNote remote code execution vulnerability whose CVSS Attack Vector is Local, a combination that sounds contradictory but describes two different parts of the attack. “Remote code execution” identifies the attacker’s relationship to the victim, while AV:L describes...