CVE-2025-47176
HIGHDescription
'.../...//' in Microsoft Office Outlook allows an authorized attacker to execute code locally.
Is your site exposed to CVE-2025-47176?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| microsoft | 365_apps |
| microsoft | 365_apps |
| microsoft | office_long_term_servicing_channel |
| microsoft | office_long_term_servicing_channel |
References
Advisories & Patches
Frequently Asked Questions
What is CVE-2025-47176? +
How severe is CVE-2025-47176? +
What products are affected by CVE-2025-47176? +
How do I check if I'm vulnerable to CVE-2025-47176? +
Related Vulnerabilities
Ericsson Packet Core Controller (PCC) versions prior to 1.39 contain a directory traversal vulnerability in Configuration Management that could allow …
Path Traversal vulnerability in WF Steuerungstechnik GmbH airleader MASTER allows Retrieve Embedded Sensitive Data.This issue affects airleader MASTER: 3.0046.
Intrado 911 Emergency Gateway (EGW) 5.x, 6.x, and 7.x contain a path traversal vulnerability in the download_debuglog_file.php endpoint used for …
`oak` is a middleware framework for Deno's native HTTP server, Deno Deploy, Node.js 16.5 and later, Cloudflare Workers and Bun. …
DIAView (v4.2.0 and prior) - Directory Traversal Information Disclosure Vulnerability
Heimdall is a cloud native Identity Aware Proxy and Access Control Decision service. Prior to version 0.17.14, Heimdall performs rule …