VYPR

Sharepoint Server

by Microsoft

CVEs (672)

  • CVE-2019-1262MedSep 11, 2019
    risk 0.38cvss 5.4epss 0.03

    A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server, aka 'Microsoft Office SharePoint XSS Vulnerability'.

  • CVE-2017-0105MedMar 17, 2017
    risk 0.38cvss 5.5epss 0.30

    Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word for Mac 2011, Office Compatibility Pack SP3, Word Automation Services on SharePoint Server 2010 SP2, and Office Web Apps 2010 SP2 allow remote attackers to obtain sensitive information from out-of-bound memory via a…

  • CVE-2016-3234MedJun 16, 2016
    risk 0.38cvss 5.5epss 0.24

    Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Office Compatibility Pack SP3, Word Viewer, Word Automation Services on SharePoint Server 2010 SP2, Word Automation Services on SharePoint Server 2013 SP1, Office Web Apps 2010 SP2, and Office Web Apps Server 2013 SP1…

  • CVE-2021-31965MedJun 8, 2021
    risk 0.37cvss 5.7epss 0.05

    Microsoft SharePoint Server Information Disclosure Vulnerability

  • CVE-2019-0950MedMay 16, 2019
    risk 0.37cvss 5.7epss 0.02

    A spoofing vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server, aka 'Microsoft SharePoint Spoofing Vulnerability'. This CVE ID is unique from CVE-2019-0949, CVE-2019-0951.

  • CVE-2019-0949MedMay 16, 2019
    risk 0.37cvss 5.7epss 0.02

    A spoofing vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server, aka 'Microsoft SharePoint Spoofing Vulnerability'. This CVE ID is unique from CVE-2019-0950, CVE-2019-0951.

  • CVE-2016-3279MedJul 13, 2016
    risk 0.37cvss 5.5epss 0.16

    Microsoft Office 2010 SP2, Excel 2010 SP2, PowerPoint 2010 SP2, Word 2010 SP2, Excel 2013 SP1, PowerPoint 2013 SP1, Word 2013 SP1, Excel 2013 RT SP1, PowerPoint 2013 RT SP1, Word 2013 RT SP1, Excel 2016, Word 2016, Word Automation Services on SharePoint Server 2010 SP2, and…

  • CVE-2026-44821MedJun 9, 2026
    risk 0.36cvss 5.5epss 0.00

    Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.

  • CVE-2024-49065MedDec 12, 2024
    risk 0.36cvss 5.5epss 0.01

    Microsoft Office Remote Code Execution Vulnerability

  • CVE-2022-41103MedNov 9, 2022
    risk 0.36cvss 5.5epss 0.01

    Microsoft Word Information Disclosure Vulnerability

  • CVE-2022-41060MedNov 9, 2022
    risk 0.36cvss 5.5epss 0.01

    Microsoft Word Information Disclosure Vulnerability

  • CVE-2022-30172MedJun 15, 2022
    risk 0.36cvss 5.5epss 0.03

    Microsoft Office Information Disclosure Vulnerability

  • CVE-2022-30171MedJun 15, 2022
    risk 0.36cvss 5.5epss 0.02

    Microsoft Office Information Disclosure Vulnerability

  • CVE-2022-30159MedJun 15, 2022
    risk 0.36cvss 5.5epss 0.03

    Microsoft Office Information Disclosure Vulnerability

  • CVE-2022-22716MedFeb 9, 2022
    risk 0.36cvss 5.5epss 0.05

    Microsoft Excel Information Disclosure Vulnerability

  • CVE-2020-1224MedSep 11, 2020
    risk 0.36cvss 5.5epss 0.04

    An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory. An attacker who exploited the vulnerability could use the information to compromise the user’s computer or data. To exploit the vulnerability, an…

  • CVE-2020-1573MedAug 17, 2020
    risk 0.36cvss 5.5epss 0.02

    A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server. An authenticated attacker could exploit the vulnerability by sending a specially crafted request to an…

  • CVE-2020-1505MedAug 17, 2020
    risk 0.36cvss 5.5epss 0.01

    An information disclosure vulnerability exists when Microsoft SharePoint Server fails to properly handle objects in memory. An attacker who successfully exploited this vulnerability could obtain information to further compromise the user’s system. To exploit the vulnerability,…

  • CVE-2020-1503MedAug 17, 2020
    risk 0.36cvss 5.5epss 0.05

    An information disclosure vulnerability exists when Microsoft Word improperly discloses the contents of its memory. An attacker who exploited the vulnerability could use the information to compromise the user’s computer or data. To exploit the vulnerability, an attacker could…

  • CVE-2020-1502MedAug 17, 2020
    risk 0.36cvss 5.5epss 0.05

    An information disclosure vulnerability exists when Microsoft Word improperly discloses the contents of its memory. An attacker who exploited the vulnerability could use the information to compromise the user’s computer or data. To exploit the vulnerability, an attacker could…

Page 19 of 34