Vulnérabilité · NVD
CVE-2026-41101
CVE-2026-41101, sévérité high (CVSS 7.1) : 1 app suivie concernée, toutes corrigées ou à statut indéterminable en version courante.
- Gravité (CVSS)
- 7.1
- Exploitation
- 0.3 %
- Apps suivies
- 1
- Encore exposées
- 0
Échelle NVD
EPSS, prédiction à 30 jours
EN Improper access control in Microsoft Office Word allows an authorized attacker to perform spoofing locally.
Vecteur d'attaque : Local
Sans interaction utilisateur
Voir le vecteur CVSS brut
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
EPSS
0.29%
exploit très peu probable
percentile 22.0%
Apps suivies liées à cette CVE
Pour chaque app : la plage affectée, la version qui corrige, et où en est l'app suivie aujourd'hui.
-
Builds affectées observées (29)
16.0.19822.20104 16.0.19822.20038 16.0.19725.20058 16.0.19628.20074 16.0.19530.20070 16.0.19328.20086 16.0.19231.20090 16.0.19127.20134 16.0.19029.20110 16.0.18526.20030 16.0.18429.20094 16.0.18324.20086 16.0.17830.20082 16.0.17328.20152 16.0.16501.20160 16.0.15629.20092 16.0.15427.20090 16.0.15128.20206 16.0.14729.20146 16.0.14527.20162 16.0.14326.20140 16.0.14228.20138 16.0.13801.20162 16.0.13127.20162 16.0.13029.20182 16.0.12624.20254 16.0.12130.20208 16.0.11001.20074 16.0.10827.20078
Configurations CPE vulnérables (1)
| Vendor | Produit | Plateforme | Versions | CPE 2.3 URI |
|---|---|---|---|---|
| microsoft |
word Android
|
Android | <16.0.19822.20190 | cpe:2.3:a:microsoft:word:*:*:*:*:*:android:*:* |