PT-2022-5950 · Microsoft · Office Onenote

Alec Stuart

·

Published

2022-12-13

·

Updated

2023-03-10

·

CVE-2022-44691

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Microsoft Office OneNote (affected versions not specified)
Description The issue is related to insufficient input validation in Microsoft OneNote. Exploitation of this issue may allow an attacker to execute arbitrary code using a specially crafted file.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Weakness Enumeration

Related Identifiers

BDU:2022-07378
CVE-2022-44691

Affected Products

Office Onenote