Microsoft Office Access Connectivity Engine Remote Code Execution Vulnerability
High CVSS 7.8 Listed in CISA KEV
Summary
Microsoft Office Access Connectivity Engine contains an unspecified vulnerability which can allow for remote code execution.
In-depth triage · Auto channel
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Affected products
- Microsoft:Office
- :
Sources
- CISA KEV DATABASE
- NVD DATABASE
Original Links
- https://nvd.nist.gov/vuln/detail/CVE-2021-38646 advisory
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog kev
- https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-38646 Patch
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-38646 Patch
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2021-38646 US Government Resource
Timeline
- kev_added CISA KEV
- kev_ingest CISA KEV
- nvd_ingest NVD