漏洞描述 Microsoft Excel是美国微软(Microsoft)公司Office套件中的一款电子表格处理软件。 Microsoft Excel在解析Excel电子表格时没有正确验证记录信息。远程攻击者可利用此漏洞完全控制受影响的系统,并随后安装程序;查看、更改或删除数据;或者创建拥有完全用户权限的新帐户。
相关漏洞推荐 POC sharepoint-lists-api-disclosure: Microsoft SharePoint - List API Disclosure POC sharepoint-layouts-disclosure: Microsoft SharePoint - Layouts Disclosure POC sharepoint-masterpage-disclosure: Microsoft SharePoint - Master Page Disclosure POC sharepoint-site-metadata-disclosure: Microsoft SharePoint - Site Metadata Disclosure POC sharepoint-sitepages-disclosure: Microsoft SharePoint - Site Pages Disclosure POC CVE-2025-49706: Microsoft SharePoint Server - Authentication Bypass 用友NC /portal/pt/infopathimport/importExcelTemplate pageId 文件上传漏洞 关于portal端importExcelTemplate接口任意文件上传漏洞修复通告 (CVE-2025-53770)Microsoft SharePoint Server反序列化漏洞允许远程代码执行 Microsoft Web Deploy 需授权 反序列化漏洞 可导致任意代码执行 POC 用友NC importExcelTemplate 任意文件上传 POC CVE-2019-0604: Microsoft SharePoint - Remote Code Execution POC CVE-2020-0646: Microsoft .NET Framework - Remote Code Execution