cbcvebase.
CVE-2026-42832
published 2026-05-12

CVE-2026-42832: Improper access control in Microsoft Office allows an unauthorized attacker to perform spoofing locally.

medium5.5CVSS 3.1
AVLACLPRLUINSUCNIHAN
Improper access control in Microsoft Office allows an unauthorized attacker to perform spoofing locally.

Affected

8 ranges
VendorProductVersion rangeFixed in
microsoftexcel< 16.0.19822.2019016.0.19822.20190
microsoftmicrosoft_excel_for_android>= 16.0.0.0 < 16.0.19822.2019016.0.19822.20190
microsoftmicrosoft_office_ltsc_for_mac_2021>= 16.0.1 < 16.109.2605101916.109.26051019
microsoftmicrosoft_office_ltsc_for_mac_2024>= 16.0.0 < 16.109.2605101916.109.26051019
microsoftmicrosoft_word_for_android>= 16.0.0.0 < 16.0.19822.2019016.0.19822.20190
microsoftoffice
microsoftoffice_long_term_servicing_channel
microsoftword< 16.0.19822.2019016.0.19822.20190