Microsoft Office OneNote Remote Code Execution Vulnerability
The product constructs the name of a file or other resource using input from an upstream component, but it does not restrict or incorrectly restricts the resulting name.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Office | Microsoft | 2021 (including) | 2021 (including) |
Office | Microsoft | 2024 (including) | 2024 (including) |
Onenote | Microsoft | - (including) | - (including) |