#VU105300 Improper Neutralization of Argument Delimiters in a Command in LibreOffice - CVE-2025-1080
Published: March 4, 2025
LibreOffice
LibreOffice
Description
The vulnerability allows a remote attacker to compromise the affected system.
The vulnerability exists due to improper parsing of Office URI Schemes that enable integration of LibreOffice with MS SharePoint server. A remote attacker can trick the victim into clicking on a specially crafted URL and call internal macros with arbitrary arguments.