Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-64677

Опубликовано: 18 дек. 2025
Источник: nvd
CVSS3: 8.2
EPSS Низкий

Описание

Improper neutralization of input during web page generation ('cross-site scripting') in Office Out-of-Box Experience allows an unauthorized attacker to perform spoofing over a network.

EPSS

Процентиль: 23%
0.00074
Низкий

8.2 High

CVSS3

Дефекты

CWE-79

Связанные уязвимости

msrc
3 дня назад

Office Out-of-Box Experience Spoofing Vulnerability

CVSS3: 8.2
github
2 дня назад

Improper neutralization of input during web page generation ('cross-site scripting') in Office Out-of-Box Experience allows an unauthorized attacker to perform spoofing over a network.

EPSS

Процентиль: 23%
0.00074
Низкий

8.2 High

CVSS3

Дефекты

CWE-79