CVE-2026-81401
Ein Angreifer kann mehrere Schwachstellen in verschiedenen Microsoft Office Produkten, Microsoft Office Online Server, Microsoft 365 Apps, Microsoft SharePoint, Microsoft Teams und Microsoft Skype ausnutzen, um erhöhte Berechtigungen zu erlangen, um Code auszuführen, um Informationen offenzulegen und um den Nutzer zu täuschen.
⚡ Watch CVE-2026-81401
Get an email if CVE-2026-81401 is added to CISA KEV, gains public exploit code, or a new advisory cites it — max one per day, one-click unsubscribe.
Exploitation outlook
- Low exploitation risk0.51% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 42% of all EPSS-scored CVEs.
Advisory coverage (4)
- high[NEU] [hoch] Microsoft Office Produkte: Mehrere Schwachstellencert-bund · 2026-09-09
- unknownMultiples vulnérabilités dans Microsoft Office (09 septembre 2026)cert-fr-avis · 2026-09-09
- mediumCVE-2026-81401: Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows…nvd · 2026-09-08
- mediumCVE-2026-81401: Microsoft Excel Information Disclosure Vulnerabilitymsrc · 2026-09-08
External references
Embed the live status
— this badge updates automatically when the KEV or exploit status changes. How to embed it →
[](https://www.csirts.com/cve/CVE-2026-81401)