CVE-2025-47168

Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:microsoft:365_apps:-:*:*:*:enterprise:*:*:*
cpe:2.3:a:microsoft:office:2019:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:office_long_term_servicing_channel:2021:*:*:*:*:-:*:*
cpe:2.3:a:microsoft:office_long_term_servicing_channel:2021:*:*:*:*:macos:*:*
cpe:2.3:a:microsoft:office_long_term_servicing_channel:2024:*:*:*:*:-:*:*
cpe:2.3:a:microsoft:office_long_term_servicing_channel:2024:*:*:*:*:macos:*:*
cpe:2.3:a:microsoft:sharepoint_enterprise_server:2016:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:sharepoint_server:2019:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:word:2016:*:*:*:*:*:*:*

History

09 Jul 2025, 14:06

Type Values Removed Values Added
First Time Microsoft office Long Term Servicing Channel
Microsoft sharepoint Server
Microsoft office
Microsoft sharepoint Enterprise Server
Microsoft
Microsoft 365 Apps
Microsoft word
References () https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-47168 - () https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-47168 - Vendor Advisory
CPE cpe:2.3:a:microsoft:office_long_term_servicing_channel:2021:*:*:*:*:-:*:*
cpe:2.3:a:microsoft:word:2016:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:office_long_term_servicing_channel:2024:*:*:*:*:-:*:*
cpe:2.3:a:microsoft:365_apps:-:*:*:*:enterprise:*:*:*
cpe:2.3:a:microsoft:office_long_term_servicing_channel:2021:*:*:*:*:macos:*:*
cpe:2.3:a:microsoft:office:2019:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:sharepoint_server:2019:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:office_long_term_servicing_channel:2024:*:*:*:*:macos:*:*
cpe:2.3:a:microsoft:sharepoint_enterprise_server:2016:*:*:*:*:*:*:*

12 Jun 2025, 16:06

Type Values Removed Values Added
Summary
  • (es) Use After Free en Microsoft Office Word permite que un atacante no autorizado ejecute código localmente.

10 Jun 2025, 17:23

Type Values Removed Values Added
New CVE

Information

Published : 2025-06-10 17:23

Updated : 2025-07-09 14:06


NVD link : CVE-2025-47168

Mitre link : CVE-2025-47168

CVE.ORG link : CVE-2025-47168


JSON object : View

Products Affected

microsoft

  • office_long_term_servicing_channel
  • sharepoint_enterprise_server
  • word
  • sharepoint_server
  • office
  • 365_apps
CWE
CWE-416

Use After Free