Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Thu, 24 Sep 2026 22:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Microsoft Outlook Remote Code Execution Vulnerability | Microsoft Office Outlook Remote Code Execution Vulnerability |
| Title | Microsoft Outlook Remote Code Execution Vulnerability | Microsoft Office Outlook Remote Code Execution Vulnerability |
Thu, 24 Sep 2026 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 24 Sep 2026 00:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-94 |
Wed, 23 Sep 2026 22:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Microsoft Outlook Remote Code Execution Vulnerability | |
| Title | Microsoft Outlook Remote Code Execution Vulnerability | |
| First Time appeared |
Microsoft
Microsoft 365 Apps Microsoft office 2021 Microsoft office 2024 |
|
| CPEs | cpe:2.3:a:microsoft:365_apps:*:*:*:*:enterprise:*:*:* cpe:2.3:a:microsoft:office_2021:*:*:*:*:long_term_servicing_channel:*:*:* cpe:2.3:a:microsoft:office_2024:*:*:*:*:long_term_servicing_channel:*:*:* |
|
| Vendors & Products |
Microsoft
Microsoft 365 Apps Microsoft office 2021 Microsoft office 2024 |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: microsoft
Published:
Updated: 2026-09-24T22:23:57.737Z
Reserved: 2026-08-03T23:31:50.775Z
Link: CVE-2026-70125
Updated: 2026-09-24T13:28:44.999Z
Status : Awaiting Analysis
Published: 2026-09-23T23:18:12.510
Modified: 2026-09-24T14:51:56.593
Link: CVE-2026-70125
No data.
OpenCVE Enrichment
Updated: 2026-09-24T00:30:07Z
-
CWE-94
Improper Control of Generation of Code ('Code Injection')