CVE-2022-29107
published 2022-05-10CVE-2022-29107: Microsoft Office Security Feature Bypass Vulnerability
PriorityP427medium5.5CVSS 3.1
AVLACLPRNUIRSUCHINAN
EPSS
2.71%
84.3th percentile
Microsoft Office Security Feature Bypass Vulnerability
Affected
23 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| microsoft | microsoft_365_apps_for_enterprise | >= 16.0.1 < https://aka.ms/OfficeSecurityReleases | https://aka.ms/OfficeSecurityReleases |
| microsoft | microsoft_office_2019 | >= 19.0.0 < https://aka.ms/OfficeSecurityReleases | https://aka.ms/OfficeSecurityReleases |
| microsoft | microsoft_office_ltsc_2021 | >= 16.0.1 < https://aka.ms/OfficeSecurityReleases | https://aka.ms/OfficeSecurityReleases |
| microsoft | microsoft_publisher_2013_service_pack_1 | >= 15.0.0 < 15.0.5449.1000 | 15.0.5449.1000 |
| microsoft | microsoft_publisher_2016 | >= 16.0.0 < 16.0.5317.1000 | 16.0.5317.1000 |
| microsoft | microsoft_word_2013_service_pack_1 | >= 15.0.1 < 15.0.5449.1000 | 15.0.5449.1000 |
| microsoft | microsoft_word_2016 | >= 16.0.1 < 16.0.5317.1000 | 16.0.5317.1000 |
| microsoft | office | — | — |
| microsoft | office_long_term_servicing_channel | — | — |
| microsoft | publisher | — | — |
| microsoft | word | — | — |
| microsoft | word | — | — |
| msrc | microsoft_365_apps_for_enterprise_for_32-bit_systems | — | — |
| msrc | microsoft_365_apps_for_enterprise_for_64-bit_systems | — | — |
| msrc | microsoft_office_2019_for_32-bit_editions | — | — |
| msrc | microsoft_office_2019_for_64-bit_editions | — | — |
| msrc | microsoft_office_ltsc_2021_for_32-bit_editions | — | — |
| msrc | microsoft_office_ltsc_2021_for_64-bit_editions | — | — |
| msrc | microsoft_publisher_2013_service_pack_1 | — | — |
| msrc | microsoft_publisher_2016 | — | — |
| msrc | microsoft_word_2013_rt_service_pack_1 | — | — |
| msrc | microsoft_word_2013_service_pack_1 | — | — |
| msrc | microsoft_word_2016 | — | — |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:P/I:N/A:N
vendor_msrc5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
Microsoft Office up to LTSC 2021 Remote Code Execution
vuldb·2026-05-19·CVSS 5.5
CVE-2022-29107 [MEDIUM] Microsoft Office up to LTSC 2021 Remote Code Execution
A vulnerability classified as critical has been found in Microsoft Office 2013 SP1/2016/2019/LTSC 2021/365 Apps for Enterprise. Affected by this issue is some unknown functionality. This manipulation causes Remote Code Execution.
This vulnerability is tracked as CVE-2022-29107. The attack is possible to be carried out remotely. No exploit exists.
To fix this issue, it is recommended to deploy a patch.
GHSA
GHSA-f362-3wmq-4vf5: Microsoft Office Security Feature Bypass Vulnerability
ghsa_unreviewed·2022-05-11
CVE-2022-29107 [MEDIUM] CWE-863 GHSA-f362-3wmq-4vf5: Microsoft Office Security Feature Bypass Vulnerability
Microsoft Office Security Feature Bypass Vulnerability.
Microsoft
Microsoft Office Security Feature Bypass Vulnerability
vendor_msrc·2022-05-10·CVSS 5.5
CVE-2022-29107 [MEDIUM] Microsoft Office Security Feature Bypass Vulnerability
Microsoft Office Security Feature Bypass Vulnerability
FAQ: Is the Preview Pane an attack vector for this vulnerability?
No, the Preview Pane is not an attack vector.
FAQ: What kind of security feature could be bypassed by successfully exploiting this vulnerability?
An attacker who successfully exploited this vulnerability would be able to view Personally Identifiable Information (PII), bypassing the "ThisDocument.RemovePersonalInformation" expected functionality. The attacker would need to first gain access to a document protected in this way by the target.
FAQ: According to the CVSS metric, user interaction is required (UI:R). What interaction would the user have to do?
A attacker would need to make use of the affected protection and then make the file accessible, either through direc
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2022-05-10
Published