CVE-2025-64677
EUVD-2025-20441218.12.2025, 22:16
Improper neutralization of input during web page generation ('cross-site scripting') in Office Out-of-Box Experience allows an unauthorized attacker to perform spoofing over a network.Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| microsoft | office_out-of-box_experience | - |
𝑥
= Vulnerable software versions