Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Excel
(Microsoft)| Repositories |
Unknown: This might be proprietary software. |
| #Vulnerabilities | 357 |
| Date | Id | Summary | Products | Score | Patch | Annotated |
|---|---|---|---|---|---|---|
| 2025-05-13 | CVE-2025-30379 | Release of invalid pointer or reference in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | 365_apps, Excel, Office, Office_long_term_servicing_channel, Office_online_server | N/A | ||
| 2025-05-13 | CVE-2025-30383 | Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | 365_apps, Excel, Office, Office_long_term_servicing_channel, Office_online_server | N/A | ||
| 2025-05-13 | CVE-2025-32704 | Buffer over-read in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | 365_apps, Excel, Office, Office_long_term_servicing_channel | 7.8 | ||
| 2021-11-10 | CVE-2021-42292 | Microsoft Excel Security Feature Bypass Vulnerability | 365_apps, Excel, Office, Office_long_term_servicing_channel | N/A | ||
| 2021-10-13 | CVE-2021-40485 | Microsoft Excel Remote Code Execution Vulnerability | 365_apps, Excel, Office, Office_long_term_servicing_channel, Office_online_server, Sharepoint_enterprise_server | N/A | ||
| 2023-03-14 | CVE-2023-23398 | Microsoft Excel Spoofing Vulnerability | 365_apps, Excel, Office | 7.1 | ||
| 2009-11-11 | CVE-2009-3129 | Microsoft Office Excel 2002 SP3, 2003 SP3, and 2007 SP1 and SP2; Office 2004 and 2008 for Mac; Open XML File Format Converter for Mac; Office Excel Viewer 2003 SP3; Office Excel Viewer SP1 and SP2; and Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats SP1 and SP2 allows remote attackers to execute arbitrary code via a spreadsheet with a FEATHEADER record containing an invalid cbHdrData size element that affects a pointer offset, aka "Excel Featheader Record Memory... | Excel, Excel_viewer, Office, Open_xml_file_format_converter | 7.8 | ||
| 2016-12-20 | CVE-2016-7262 | Microsoft Excel 2007 SP3, Excel 2010 SP2, Excel 2013 SP1, Excel 2013 RT SP1, Excel 2016, Office Compatibility Pack SP3, and Excel Viewer allow user-assisted remote attackers to execute arbitrary commands via a crafted cell that is mishandled upon a click, aka "Microsoft Office Security Feature Bypass Vulnerability." | Excel, Excel_viewer, Office_compatibility_pack | 7.8 | ||
| 2019-09-11 | CVE-2019-1297 | A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'. | Excel, Office, Office_365_proplus | 8.8 | ||
| 2008-01-16 | CVE-2008-0081 | Unspecified vulnerability in Microsoft Excel 2000 SP3 through 2003 SP2, Viewer 2003, and Office 2004 for Mac allows user-assisted remote attackers to execute arbitrary code via crafted macros, aka "Macro Validation Vulnerability," a different vulnerability than CVE-2007-3490. | Excel, Excel_viewer, Office | 9.8 |