CVE-2015-1639Cross-site Scripting in Microsoft Office

Severity
4.3MEDIUMNVD
EPSS
6.9%
top 8.56%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedApr 14
Latest updateMay 14

Description

Cross-site scripting (XSS) vulnerability in Microsoft Office for Mac 2011 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka "Microsoft Outlook App for Mac XSS Vulnerability."

CVSS vector

AV:N/AC:M/C:N/I:P/A:NExploitability: 8.6 | Impact: 2.9

Affected Packages1 packages

🔴Vulnerability Details

1
GHSA
GHSA-hg8q-875p-6pxx: Cross-site scripting (XSS) vulnerability in Microsoft Office for Mac 2011 allows remote attackers to inject arbitrary web script or HTML via unspecifi2022-05-14

🕵️Threat Intelligence

2
Talos
Microsoft Patch Tuesday for April 2015: 11 Bulletins Released2015-04-14
Talos
Microsoft Patch Tuesday for April 2015: 11 Bulletins Released2015-04-14
CVE-2015-1639 — Cross-site Scripting in Microsoft | cvebase