CVE-2025-47168

Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:microsoft:365_apps:-:*:*:*:enterprise:*:*:*
cpe:2.3:a:microsoft:office:2019:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:office_long_term_servicing_channel:2021:*:*:*:*:-:*:*
cpe:2.3:a:microsoft:office_long_term_servicing_channel:2021:*:*:*:*:macos:*:*
cpe:2.3:a:microsoft:office_long_term_servicing_channel:2024:*:*:*:*:-:*:*
cpe:2.3:a:microsoft:office_long_term_servicing_channel:2024:*:*:*:*:macos:*:*
cpe:2.3:a:microsoft:sharepoint_enterprise_server:2016:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:sharepoint_server:2019:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:word:2016:*:*:*:*:*:*:*

History

09 Jul 2025, 14:06

Type Values Removed Values Added
First Time Microsoft
Microsoft word
Microsoft sharepoint Enterprise Server
Microsoft sharepoint Server
Microsoft 365 Apps
Microsoft office
Microsoft office Long Term Servicing Channel
References () https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-47168 - () https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-47168 - Vendor Advisory
CPE cpe:2.3:a:microsoft:sharepoint_server:2019:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:office_long_term_servicing_channel:2021:*:*:*:*:-:*:*
cpe:2.3:a:microsoft:sharepoint_enterprise_server:2016:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:office_long_term_servicing_channel:2021:*:*:*:*:macos:*:*
cpe:2.3:a:microsoft:office_long_term_servicing_channel:2024:*:*:*:*:macos:*:*
cpe:2.3:a:microsoft:office_long_term_servicing_channel:2024:*:*:*:*:-:*:*
cpe:2.3:a:microsoft:word:2016:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:365_apps:-:*:*:*:enterprise:*:*:*
cpe:2.3:a:microsoft:office:2019:*:*:*:*:*:*:*

12 Jun 2025, 16:06

Type Values Removed Values Added
Summary
  • (es) Use After Free en Microsoft Office Word permite que un atacante no autorizado ejecute código localmente.

10 Jun 2025, 17:23

Type Values Removed Values Added
New CVE

Information

Published : 2025-06-10 17:23

Updated : 2025-07-09 14:06


NVD link : CVE-2025-47168

Mitre link : CVE-2025-47168

CVE.ORG link : CVE-2025-47168


JSON object : View

Products Affected

microsoft

  • sharepoint_server
  • sharepoint_enterprise_server
  • office_long_term_servicing_channel
  • word
  • 365_apps
  • office
CWE
CWE-416

Use After Free