CVE-2025-27747
CVE-2025-27747: 1 tracked advisory record across MS Server. Compare vendor sources and published fix guidance.
Compare the source-linked records below. Ratings and product/version details belong to each advisory; they are not a single CVE-wide score or proof that every listed product is affected. How VulniPulse collects and checks evidence.
Vendor advisory comparison
MS Server
1 advisory- Advisory severityHigh7.8
High [CVE-2025-27747] Microsoft Word Remote Code Execution Vulnerability
CVE-2025-27747Source published Source updated
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally. Affected products named by the advisory: Microsoft SharePoint Enterprise Server 2016; Microsoft SharePoint Server 2019.
- Affected products in this advisory
- Microsoft SharePoint Enterprise Server 2016
- Microsoft SharePoint Server 2019
- Source-reported affected versions
- Microsoft 365 Apps for Enterprise 16.0.1 before https://aka.ms/OfficeSecurityReleases
- Microsoft Office 2019 19.0.0 before https://aka.ms/OfficeSecurityReleases
- Microsoft Office LTSC 2021 16.0.1 before https://aka.ms/OfficeSecurityReleases
- Microsoft Office LTSC 2024 16.0.0 before https://aka.ms/OfficeSecurityReleases
5 more entries in the full advisory.
- Source-reported fixed versions
- https://aka.ms/OfficeSecurityReleases
- 16.96.25041326
- 16.0.5495.1002
- 16.0.10417.20003
- Mitigation guidance
- No mitigation guidance extracted; consult the source.
Android app · Google Play
Monitor future MS Server CVEs from your phone.
Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.