CVE-2025-21402 | Microsoft Office/OneNote improper restriction of names for files and other resources (Nessus ID 214206)
A vulnerability was found in Microsoft Office and OneNote and classified as critical. This impacts an unknown function. Such manipulation leads to improper restriction of names for files and other resources.
This vulnerability is documented as CVE-2025-21402. The attack can be executed remotely. There is not any exploit available.
It is best practice to apply a patch to resolve this issue.