Incomplete list of disallowed inputs in Microsoft Office OneNote allows an unauthorized attacker to bypass a security feature locally.
2025-04-08T18:16:08.023
2025-07-08T17:12:21.260
Analyzed
CVSSv3.1: 7.8 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | microsoft | office | 2019 | Yes |
Application | microsoft | office | 2019 | Yes |
Application | microsoft | office_long_term_servicing_channel | 2021 | Yes |
Application | microsoft | office_long_term_servicing_channel | 2021 | Yes |
Application | microsoft | office_long_term_servicing_channel | 2021 | Yes |
Application | microsoft | office_long_term_servicing_channel | 2024 | Yes |
Application | microsoft | office_long_term_servicing_channel | 2024 | Yes |
Application | microsoft | office_long_term_servicing_channel | 2024 | Yes |
Application | microsoft | onenote | - | Yes |
Application | microsoft | onenote | 2016 | Yes |