PT-2021-2287 · Microsoft · 365 Apps For Enterprise

Published

2021-03-09

·

Updated

2024-07-12

·

CVE-2021-27058

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Microsoft 365 Apps for Enterprise (affected versions not specified)
Description The issue is related to a component of Microsoft 365 Apps for Enterprise, specifically the Click-to-Run (C2R) package, which has a problem with incorrect code generation management. This could allow a remote attacker to execute arbitrary code.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Code Injection

Weakness Enumeration

Related Identifiers

BDU:2021-01370
CVE-2021-27058
OPENSUSE-SU-2024:14151-1

Affected Products

365 Apps For Enterprise