CVE-2026-62804 Advisory
Severity: HIGH (CVSS 7.8)
Affected Product:
- Microsoft Defender Business
Vulnerability Description: External control of file name or path in Microsoft Office Word allows an unauthorized attacker to execute code locally.
KEV Status: Not listed as exploited in the wild
Remediation: Refer to Microsoft Security Response Center guidance: https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-62804
Recommendation: Apply available security updates from Microsoft promptly. Exercise caution with Office Word documents from untrusted sources.