CVE-2023-36897
08.08.2023, 18:15
Visual Studio Tools for Office Runtime Spoofing VulnerabilityEnginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| microsoft | 365_apps | - |
| microsoft | 365_apps | - |
| microsoft | visual_studio_2010_tools_for_office_runtime | - |
| microsoft | visual_studio_2017 | 15.0 ≤ 𝑥 < 15.9.56 |
| microsoft | visual_studio_2019 | 16.0 ≤ 𝑥 < 16.11.29 |
| microsoft | visual_studio_2022 | 17.2.0 ≤ 𝑥 < 17.2.18 |
| microsoft | visual_studio_2022 | 17.4.0 ≤ 𝑥 < 17.4.10 |
| microsoft | visual_studio_2022 | 17.6.0 ≤ 𝑥 < 17.6.6 |
| microsoft | 365_apps | 𝑥 < 2307 |
| microsoft | office | 𝑥 < 2307 |
𝑥
= Vulnerable software versions
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| microsoft | office_2019 | 15.9.0 ≤ 𝑥 < 15.9.56 | CNA |
| microsoft | office_2019 | 17.2.0 ≤ 𝑥 < 17.2.18 | CNA |
| microsoft | office_2019 | 16.11.0 ≤ 𝑥 < 16.11.29 | CNA |
| microsoft | office_2019 | 17.4.0 ≤ 𝑥 < 17.4.10 | CNA |
| microsoft | office_2019 | 17.6.0 ≤ 𝑥 < 17.6.6 | CNA |
| microsoft | office_2019 | 10.0.0 ≤ 𝑥 < 10.0.60910 | CNA |
Common Weakness Enumeration