Sharepoint Server
by Microsoft
CVEs (672)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2022-22005 | Hig | 0.59 | 8.8 | 0.17 | Feb 9, 2022 | Microsoft SharePoint Server Remote Code Execution Vulnerability | ||
| CVE-2020-1439 | Hig | 0.59 | 8.8 | 0.20 | Jul 14, 2020 | A remote code execution vulnerability exists in PerformancePoint Services for SharePoint Server when the software fails to check the source markup of XML file input, aka 'PerformancePoint Services Remote Code Execution Vulnerability'. | ||
| CVE-2019-1331 | Hig | 0.59 | 8.8 | 0.19 | Oct 10, 2019 | A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-1327. | ||
| CVE-2019-0585 | Hig | 0.59 | 8.8 | 0.22 | Jan 8, 2019 | A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory, aka "Microsoft Word Remote Code Execution Vulnerability." This affects Word, Microsoft Office, Microsoft Office Word Viewer, Office 365 ProPlus, Microsoft… | ||
| CVE-2018-8504 | Hig | 0.59 | 8.8 | 0.19 | Oct 10, 2018 | A remote code execution vulnerability exists in Microsoft Word software when the software fails to properly handle objects in Protected View, aka "Microsoft Word Remote Code Execution Vulnerability." This affects Microsoft SharePoint Server, Office 365 ProPlus, Microsoft Office,… | ||
| CVE-2018-1028 | Hig | 0.59 | 8.8 | 0.20 | Apr 12, 2018 | A remote code execution vulnerability exists when the Office graphics component improperly handles specially crafted embedded fonts, aka "Microsoft Office Graphics Remote Code Execution Vulnerability." This affects Word, Microsoft Office, Microsoft SharePoint, Excel, Microsoft… | ||
| CVE-2018-0792 | Hig | 0.59 | 8.8 | 0.28 | Jan 10, 2018 | Microsoft Word 2016 in Microsoft Office 2016 allows a remote code execution vulnerability due to the way objects are handled in memory, aka "Microsoft Word Remote Code Execution Vulnerability". This CVE is unique from CVE-2018-0794. | ||
| CVE-2017-8512 | Hig | 0.59 | 8.8 | 0.22 | Jun 15, 2017 | A remote code execution vulnerability exists in Microsoft Office when the software fails to properly handle objects in memory, aka "Office Remote Code Execution Vulnerability". This CVE ID is unique from CVE-2017-8509, CVE-2017-8510, CVE-2017-8511, CVE-2017-0260, and… | ||
| CVE-2017-8509 | Hig | 0.59 | 8.8 | 0.18 | Jun 15, 2017 | A remote code execution vulnerability exists in Microsoft Office when the software fails to properly handle objects in memory, aka "Office Remote Code Execution Vulnerability". This CVE ID is unique from CVE-2017-8510, CVE-2017-8511, CVE-2017-8512, CVE-2017-0260, and… | ||
| CVE-2013-0006 | Hig | 0.59 | 8.8 | 0.28 | Jan 9, 2013 | Microsoft XML Core Services (aka MSXML) 3.0, 5.0, and 6.0 does not properly parse XML content, which allows remote attackers to execute arbitrary code via a crafted web page, aka "MSXML Integer Truncation Vulnerability." | ||
| CVE-2025-47163 | Hig | 0.58 | 8.8 | 0.15 | Jun 10, 2025 | Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network. | ||
| CVE-2025-29794 | Hig | 0.58 | 8.8 | 0.05 | Apr 8, 2025 | Improper authorization in Microsoft Office SharePoint allows an authorized attacker to execute code over a network. | ||
| CVE-2023-33160 | Hig | 0.58 | 8.8 | 0.04 | Jul 11, 2023 | Microsoft SharePoint Server Remote Code Execution Vulnerability | ||
| CVE-2022-30157 | Hig | 0.58 | 8.8 | 0.08 | Jun 15, 2022 | Microsoft SharePoint Server Remote Code Execution Vulnerability | ||
| CVE-2022-29108 | Hig | 0.58 | 8.8 | 0.12 | May 10, 2022 | Microsoft SharePoint Server Remote Code Execution Vulnerability | ||
| CVE-2021-27076 | Hig | 0.58 | 8.8 | 0.14 | Mar 11, 2021 | Microsoft SharePoint Server Remote Code Execution Vulnerability | ||
| CVE-2021-24066 | Hig | 0.58 | 8.8 | 0.06 | Feb 25, 2021 | Microsoft SharePoint Remote Code Execution Vulnerability | ||
| CVE-2020-17061 | Hig | 0.58 | 8.8 | 0.04 | Nov 11, 2020 | Microsoft SharePoint Remote Code Execution Vulnerability | ||
| CVE-2020-1523 | Hig | 0.58 | 8.9 | 0.02 | Sep 11, 2020 | A tampering vulnerability exists when Microsoft SharePoint Server fails to properly handle profile data. An attacker who successfully exploited this vulnerability could modify a targeted user's profile data. To exploit the vulnerability, an attacker would need to be… | ||
| CVE-2020-1583 | Hig | 0.58 | 8.8 | 0.05 | Aug 17, 2020 | An information disclosure vulnerability exists when Microsoft Word improperly discloses the contents of its memory. An attacker who exploited the vulnerability could use the information to compromise the user’s computer or data. To exploit the vulnerability, an attacker could… |
- risk 0.59cvss 8.8epss 0.17
Microsoft SharePoint Server Remote Code Execution Vulnerability
- risk 0.59cvss 8.8epss 0.20
A remote code execution vulnerability exists in PerformancePoint Services for SharePoint Server when the software fails to check the source markup of XML file input, aka 'PerformancePoint Services Remote Code Execution Vulnerability'.
- risk 0.59cvss 8.8epss 0.19
A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-1327.
- risk 0.59cvss 8.8epss 0.22
A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory, aka "Microsoft Word Remote Code Execution Vulnerability." This affects Word, Microsoft Office, Microsoft Office Word Viewer, Office 365 ProPlus, Microsoft…
- risk 0.59cvss 8.8epss 0.19
A remote code execution vulnerability exists in Microsoft Word software when the software fails to properly handle objects in Protected View, aka "Microsoft Word Remote Code Execution Vulnerability." This affects Microsoft SharePoint Server, Office 365 ProPlus, Microsoft Office,…
- risk 0.59cvss 8.8epss 0.20
A remote code execution vulnerability exists when the Office graphics component improperly handles specially crafted embedded fonts, aka "Microsoft Office Graphics Remote Code Execution Vulnerability." This affects Word, Microsoft Office, Microsoft SharePoint, Excel, Microsoft…
- risk 0.59cvss 8.8epss 0.28
Microsoft Word 2016 in Microsoft Office 2016 allows a remote code execution vulnerability due to the way objects are handled in memory, aka "Microsoft Word Remote Code Execution Vulnerability". This CVE is unique from CVE-2018-0794.
- risk 0.59cvss 8.8epss 0.22
A remote code execution vulnerability exists in Microsoft Office when the software fails to properly handle objects in memory, aka "Office Remote Code Execution Vulnerability". This CVE ID is unique from CVE-2017-8509, CVE-2017-8510, CVE-2017-8511, CVE-2017-0260, and…
- risk 0.59cvss 8.8epss 0.18
A remote code execution vulnerability exists in Microsoft Office when the software fails to properly handle objects in memory, aka "Office Remote Code Execution Vulnerability". This CVE ID is unique from CVE-2017-8510, CVE-2017-8511, CVE-2017-8512, CVE-2017-0260, and…
- risk 0.59cvss 8.8epss 0.28
Microsoft XML Core Services (aka MSXML) 3.0, 5.0, and 6.0 does not properly parse XML content, which allows remote attackers to execute arbitrary code via a crafted web page, aka "MSXML Integer Truncation Vulnerability."
- risk 0.58cvss 8.8epss 0.15
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
- risk 0.58cvss 8.8epss 0.05
Improper authorization in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
- risk 0.58cvss 8.8epss 0.04
Microsoft SharePoint Server Remote Code Execution Vulnerability
- risk 0.58cvss 8.8epss 0.08
Microsoft SharePoint Server Remote Code Execution Vulnerability
- risk 0.58cvss 8.8epss 0.12
Microsoft SharePoint Server Remote Code Execution Vulnerability
- risk 0.58cvss 8.8epss 0.14
Microsoft SharePoint Server Remote Code Execution Vulnerability
- risk 0.58cvss 8.8epss 0.06
Microsoft SharePoint Remote Code Execution Vulnerability
- risk 0.58cvss 8.8epss 0.04
Microsoft SharePoint Remote Code Execution Vulnerability
- risk 0.58cvss 8.9epss 0.02
A tampering vulnerability exists when Microsoft SharePoint Server fails to properly handle profile data. An attacker who successfully exploited this vulnerability could modify a targeted user's profile data. To exploit the vulnerability, an attacker would need to be…
- risk 0.58cvss 8.8epss 0.05
An information disclosure vulnerability exists when Microsoft Word improperly discloses the contents of its memory. An attacker who exploited the vulnerability could use the information to compromise the user’s computer or data. To exploit the vulnerability, an attacker could…
Page 3 of 34