Deserialization of untrusted data in Microsoft Office Outlook allows an unauthorized attacker to perform spoofing over a network.
2026-02-10T18:16:33.337
2026-02-11T18:56:56.907
Analyzed
CVSSv3.1: 7.5 (HIGH)
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | microsoft | 365_apps | - | Yes |
| Application | microsoft | 365_apps | - | Yes |
| Application | microsoft | office | 2019 | Yes |
| Application | microsoft | office | 2019 | Yes |
| Application | microsoft | office_long_term_servicing_channel | 2021 | Yes |
| Application | microsoft | office_long_term_servicing_channel | 2021 | Yes |
| Application | microsoft | office_long_term_servicing_channel | 2021 | Yes |
| Application | microsoft | office_long_term_servicing_channel | 2024 | Yes |
| Application | microsoft | office_long_term_servicing_channel | 2024 | Yes |
| Application | microsoft | office_long_term_servicing_channel | 2024 | Yes |
| Application | microsoft | sharepoint_server | < 16.0.19127.20518 | Yes |
| Application | microsoft | sharepoint_server | 2016 | Yes |
| Application | microsoft | sharepoint_server | 2019 | Yes |
| Application | microsoft | word | 2016 | Yes |
| Application | microsoft | word | 2016 | Yes |