CVE-2025-53783 is a high-severity heap-based buffer overflow vulnerability in Microsoft Teams and related Dynamics 365 products, allowing an unauthorized attacker to execute code over a network. Exploitation requires user interaction and has a CVSS score of 7.5, indicating high impact on confidentiality, integrity, and availability. While not currently in the KEV catalog or actively exploited, its mention in a BleepingComputer article and community discussions suggest awareness, though no public exploit code is available.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 907.2505.29001.0CPE matchmatch criteria | cpe:2.3:a:microsoft:dynamics_365_guides:*:*:*:*:*:hololens:*:* | ||
< 316.2505.28001CPE matchmatch criteria | cpe:2.3:a:microsoft:dynamics_365_remote_assist:*:*:*:*:*:hololens:*:* | ||
< 1.0.0.2025102802CPE matchmatch criteria | cpe:2.3:a:microsoft:teams:*:*:*:*:*:android:*:* | ||
< 7.10.1CPE matchmatch criteria | cpe:2.3:a:microsoft:teams:*:*:*:*:*:iphone_os:*:* | ||
< 25122.1207.3700.1444CPE matchmatch criteria | cpe:2.3:a:microsoft:teams:*:*:*:*:*:macos:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.4 Bluesky, 0.2 Mastodon, and 0.1 GitHub mentions.
The average CVE in this peer group has 0.6 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.