CVE-2007-0671CISA KEV
Microsoft Office Excel Remote Code Execution Vulnerability
CISA lists this Microsoft vulnerability as known exploited. Its MSRC release detail is outside this installation's collected history.
CISA catalog record
Microsoft Office Excel contains a remote code execution vulnerability that can be exploited when a specially crafted Excel file is opened. This malicious file could be delivered as an email attachment or hosted on a malicious website. An attacker could leverage this vulnerability by creating a specially crafted Excel file, which, when opened, allowing an attacker to execute remote code on the affected system.
- Product
- Office
- Added to KEV
- 12 Aug 2025
- Federal remediation due
- 2 Sep 2025
- Known ransomware use
- Not reported