Live Breaking News & Updates on Localproviders launchofficeappforresult

Stay updated with breaking news from Localproviders launchofficeappforresult. Get real-time updates on events, politics, business, and more. Visit us for reliable news and exclusive interviews.

Windows 10 RCE: The exploit is in the link | Positive Security

Chaining a misconfiguration in IE11/Edge Legacy with an argument injection in a Windows 10/11 default URI handler and a bypass for a previous Electron patch, we developed a drive-by RCE exploit for Windows 10. The main vulnerability in the ms-officecmd URI handler has not been patched yet and can also be triggered through other browsers (requires confirmation of an inconspicuous dialog) and desktop applications that allow URI opening.

Lukas-euler , Resolvebest-make , Sharepoint-onedrive , Localproviders-launchofficeappforresult , Microsoft-office , Microsoft-team , Microsoft-bug-bounty-program , Office-hub , Toc-research , Microsoft , Ms-office , Edge-legacy