Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Office
(Microsoft)Repositories |
Unknown: This might be proprietary software. |
#Vulnerabilities | 883 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2018-12-12 | CVE-2018-8628 | A remote code execution vulnerability exists in Microsoft PowerPoint software when the software fails to properly handle objects in memory, aka "Microsoft PowerPoint Remote Code Execution Vulnerability." This affects Microsoft Office, Office 365 ProPlus, Microsoft PowerPoint, Microsoft SharePoint, Microsoft PowerPoint Viewer, Office Online Server, Microsoft SharePoint Server. | Office, Office_365_proplus, Office_compatibility_pack, Office_online_server, Office_web_apps, Powerpoint, Powerpoint_viewer, Sharepoint_enterprise_server, Sharepoint_server | 7.8 | ||
2018-12-12 | CVE-2018-8627 | An information disclosure vulnerability exists when Microsoft Excel software reads out of bound memory due to an uninitialized variable, which could disclose the contents of memory, aka "Microsoft Excel Information Disclosure Vulnerability." This affects Microsoft Office, Office 365 ProPlus, Microsoft Excel, Microsoft Excel Viewer, Excel. This CVE ID is unique from CVE-2018-8598. | Excel, Excel_viewer, Office, Office_365_proplus, Office_compatibility_pack, Sharepoint_server | 5.5 | ||
2018-12-12 | CVE-2018-8597 | A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka "Microsoft Excel Remote Code Execution Vulnerability." This affects Office 365 ProPlus, Microsoft Office, Microsoft Excel. This CVE ID is unique from CVE-2018-8636. | Excel, Office, Office_365, Office_compatibility_pack | 7.8 | ||
2018-11-14 | CVE-2018-8574 | A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka "Microsoft Excel Remote Code Execution Vulnerability." This affects Office 365 ProPlus, Microsoft Office, Microsoft Excel. This CVE ID is unique from CVE-2018-8577. | Office, Office_365_proplus | 7.8 | ||
2019-10-10 | CVE-2019-1331 | A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-1327. | Excel, Excel_services, Office, Office_365_proplus, Office_online_server | N/A | ||
2019-07-15 | CVE-2019-1084 | An information disclosure vulnerability exists when Exchange allows creation of entities with Display Names having non-printable characters. An authenticated attacker could exploit this vulnerability by creating entities with invalid display names, which, when added to conversations, remain invisible. This security update addresses the issue by validating display names upon creation in Microsoft Exchange, and by rendering invalid display names correctly in Microsoft Outlook clients., aka... | Exchange_server, Lync, Lync_basic, Mail_and_calendar, Office, Office_365_proplus, Outlook, Skype_for_business, Skype_for_business_basic | 6.5 | ||
2006-01-10 | CVE-2006-0002 | Unspecified vulnerability in Microsoft Outlook 2000 through 2003, Exchange 5.0 Server SP2 and 5.5 SP4, Exchange 2000 SP3, and Office allows remote attackers to execute arbitrary code via an e-mail message with a crafted Transport Neutral Encapsulation Format (TNEF) MIME attachment, related to message length validation. | Exchange_server, Office, Outlook | N/A | ||
2020-02-11 | CVE-2020-0696 | A security feature bypass vulnerability exists in Microsoft Outlook software when it improperly handles the parsing of URI formats, aka 'Microsoft Outlook Security Feature Bypass Vulnerability'. | Office, Office_365_proplus, Outlook | N/A | ||
2019-12-10 | CVE-2019-1463 | An information disclosure vulnerability exists in Microsoft Access software when the software fails to properly handle objects in memory, aka 'Microsoft Access Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2019-1400. | Office, Office_365_proplus | N/A | ||
2019-11-12 | CVE-2019-1457 | A security feature bypass vulnerability exists in Microsoft Office software by not enforcing macro settings on an Excel document, aka 'Microsoft Office Excel Security Feature Bypass'. | Office | N/A |