CVE-2023-29335

Microsoft Word Security Feature Bypass Vulnerability
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
microsoftCNA
7.5 HIGH
NETWORK
HIGH
NONE
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 69%
Affected Products (NVD)
VendorProductVersion
microsoftwindows_10_1507
𝑥
< 10.0.10240.19926
microsoftwindows_10_1607
𝑥
< 10.0.14393.5921
microsoftwindows_10_1809
𝑥
< 10.0.17763.4377
microsoftwindows_10_20h2
𝑥
< 10.0.19042.2965
microsoftwindows_10_21h2
𝑥
< 10.0.19044.2965
microsoftwindows_10_22h2
𝑥
< 10.0.19045.2965
microsoftwindows_11_21h2
𝑥
< 10.0.22000.1936
microsoftwindows_11_22h2
𝑥
< 10.0.22000.1702
microsoftwindows_server_2008
-
microsoftwindows_server_2012
-
microsoftwindows_server_2016
-
microsoftwindows_server_2022
-
microsoft365_apps
-
microsoft365_apps
𝑥
< 2304
microsoftoffice
𝑥
< 2304
𝑥
= Vulnerable software versions
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
VendorProductVersionSource
microsoftoffice_2019
16.0.1 ≤
𝑥
< 16.0.5395.1000
CNA
microsoftoffice_2019
15.0.1 ≤
𝑥
< 15.0.5553.1000
CNA