SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-62804

HIGH · CVSS 7.8 EPSS 0.33%

Source: NVD + CISA KEV + EPSS · Published 2026-09-08 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

Microsoft Office Word is vulnerable to an external control of file name or path, enabling unauthorized attackers to execute code locally on affected systems. This high-severity vulnerability poses a significant risk to users, particularly in environments where Office documents are frequently exchanged or opened from untrusted sources. Organizations using Microsoft Office should prioritize patching this vulnerability to mitigate potential exploitation.

CVE
CVE-2026-62804
Severity
HIGH
CVSS
7.8
EPSS
0.33%
Microsoft Office

Original NVD Description

External control of file name or path in Microsoft Office Word allows an unauthorized attacker to execute code locally.

Related CVEs

Other vulnerabilities affecting the same vendor(s)