Rewterz
Rewterz Threat Alert – Evilnum APT Group – Active IOCs
May 12, 2022
Rewterz
Rewterz Threat Alert – IcedID Banking Trojan – Active IOCs
May 12, 2022

Rewterz Threat Advisory – Multiple Microsoft Excel Vulnerabilities

Severity

High

Analysis Summary

CVE-2022-29109 CVSS:7.8

Microsoft Excel could allow a remote attacker to execute arbitrary code on the system. By persuading a victim to open specially-crafted content, an attacker could exploit this vulnerability to execute arbitrary code on the system.

CVE-2022-29110 CVSS:7.8

Microsoft Excel could allow a remote attacker to execute arbitrary code on the system. By persuading a victim to open specially-crafted content, an attacker could exploit this vulnerability to execute arbitrary code on the system.

Impact

Code Execution

Indicators Of Compromise

CVE

CVE-2022-29109
CVE-2022-29110

Affected Vendors

Microsoft

Affected Products

  • Microsoft Excel 2013 SP1 RT
  • Microsoft Excel 2016 x32
  • Microsoft Excel 2016 x64
  • Microsoft Office Web Apps Server 2013 SP1

Remediation

Use Microsoft Automatic Update to apply the appropriate patch for your system, or the Microsoft Security Update Guide to search for available patches.

Microsoft Security Advisory