CVE-2025-62552Patch(microsoft / 365_apps)

HIGHCVSS 7.8 · HIGH

Exploitation ongoing with high activity in latest observed window (1 mentions)

Immediate actions

  • Patch microsoft 365_apps systems immediately
  • Assume compromise if assets are exposed
  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft

Recommended action window: Immediate (within 24h)

NVD description

Relative path traversal in Microsoft Office Access allows an unauthorized attacker to execute code locally.

6.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-23

Priority

HIGH

Exploitation

ACTIVE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • 365_apps
  • access
  • office
  • office_long_term_servicing_channel

Threat summary

  • Active exploitation appears in 1 classified signals
  • Public PoC is present in monitored signal
  • Patch or workaround signal is available
  • 3 mentions across 3 observed days

What's happening

  • Active exploitation reported across 1 signal
  • PoC mentioned or linked in 1 signal
  • Patch or workaround mentioned in 2 signals
  • Technical details provided in 1 signal
  • Peaked 2d ago at 1 mentions (2026-03-18); latest day: 1
  • 3 total mentions across 3 days

Affected systems

Vendors
Products
365_appsaccessofficeoffice_long_term_servicing_channel

5 versions affected across 4 products

Deep dive

Activity timeline3 mentions / 3d
00111Mentions · 2026-03-18: 1Mentions · 2026-03-19: 1Mentions · 2026-10-08: 1PoC Mentioned / Linked · 2026-03-19: 1Active Exploitation · 2026-03-19: 1Patch / Workaround · 2026-03-18: 1Patch / Workaround · 2026-03-19: 1Technical Details · 2026-03-19: 103-1803-1910-08
Signal classification2 categories
Patch
150.0%
Active Exploitation
150.0%
Referenced assets1 URL
By indicator
Classification over time
DateTotalLabels
2026-03-181
Patch1
2026-03-191
Active Exploitation1
Full discourse3 posts
  • 0patch@0patch
    Patch

    Micropatches released for Microsoft Access Remote Code Execution Vulnerability (CVE-2025-62552) https://blog.0patch.com/2026/03/micropatches-released-for-microsoft.html https://t.co/Jtf8IOS74K

    Post summary

    The post announces that micro‑patches have been released to fix CVE-2025‑62552, a Remote Code Execution flaw in Microsoft Access, with details available on the linked blog.

    1802162.2K
    8.3K followersView on X
  • DFIR Lab@DFIR_Lab

    🚨 HIGH Severity Alert CVE-2025-62552: Path traversal flaw in Microsoft Office Access (CVSS 7.8) enables unauthorized local code execution. User interaction required. Patch immediately. #CVE #PatchNow #ThreatIntel https://t.co/teiAE0sOR2

    0000030
    144 followersView on X
  • NerdieNews@NewsNerdie
    Active Exploitation

    Google warns iPhone users about a new exploit kit used by spyware vendors and suspected state actors to plant info-stealing malware. CISA adds CVE-2025-66376 affecting Synacor Zimbra Collabora to its Known Exploited Vulnerabilities Catalog due to active exploitation. Micropatches released for Microsoft Access remote code execution vulnerability (CVE-2025-62552) to prevent unauthorized code execution. Parse Server vulnerable to schema poisoning via prototype pollution (CVE-2026-32878), allowing attackers to bypass protections. Stay sharp. Stay secure. #NerdieNews #CyberSecurity #InfoSec #ThreatIntel #APT

    Post summary

    The post reports active exploitation of CVE-2025-66376 by CISA, notes a new exploit kit used by spyware vendors, and mentions micro‑patches for CVE-2025-62552 while providing technical details on several CVEs.

    00000115
    49 followersView on X
CPE platform detail9 entries

9 of 9 entries

PartVendorProductVersionTarget SWTarget HW
Appmicrosoft365_apps--x64
Appmicrosoft365_apps--x86
Appmicrosoftaccess2016--
Appmicrosoftoffice2019-x64
Appmicrosoftoffice2019-x86
Appmicrosoftoffice_long_term_servicing_channel2021-x64
Appmicrosoftoffice_long_term_servicing_channel2021-x86
Appmicrosoftoffice_long_term_servicing_channel2024-x64
Appmicrosoftoffice_long_term_servicing_channel2024-x86

Explore more