Integer Overflow in Microsoft Office Word Allows Information Disclosure
CVE-2026-69734

6.5MEDIUM

What is CVE-2026-69734?

An integer overflow vulnerability in Microsoft Office Word could allow an unauthorized attacker to manipulate the application and disclose sensitive information over a network. This flaw presents significant risks, as it may enable attackers to gain unauthorized access to data, potentially compromising the confidentiality of user information. Users are advised to apply available patches promptly to mitigate the risks associated with this vulnerability.

Affected Version(s)

Microsoft 365 Apps for Enterprise 32-bit Systems 16.0.1 < 16.0.20326.20138

Microsoft Office 2016 32-bit Systems 16.0.0 < 16.0.5569.1000

Microsoft Office 2019 32-bit Systems 19.0.0 < 16.0.10417.20207

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.