Microsoft Office Vulnerabilities Allow Attackers to Execute Remote Code
gbhackersMicrosoft has disclosed three critical security vulnerabilities in its Office suite that could enable attackers to execute malicious code remotely on affected systems.
The vulnerabilities, identified as CVE-2025-53731, CVE-2025-53740, and CVE-2025-53730, were released on August 12, 2025, and pose significant security risks to organizations and individual users worldwide.
All three vulnerabilities stem from use-after-free memory corruption issues that could allow unauthorized code execution with elevated privileges.
Critical Vulnerabilities Discovered
The most severe of the three vulnerabilities, CVE-2025-53731 and CVE-2025-53740, both carry Critical severity ratings and affect core Microsoft Office components.
These vulnerabilities exploit use-after-free memory corruption flaws, a common class of security weakness that occurs when programs continue to use memory after it has been freed.
CVE ID | Component | Severity | CVSS Score | User Interaction | Impact |
CVE-2025-53731 | Microsoft Office | Critical | 8.4 / 7.3 | None Required | Remote Code Execution |
CVE-2025-53740 | Microsoft Office | Critical | Not Specified | Not Specified | Remote Code Execution |
CVE-2025-53730 ... |
Copyright of this story solely belongs to gbhackers . To see the full text click HERE