Microsoft Outlook
by Microsoft
CVEs (15)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2023-33151 | Med | 0.42 | 6.5 | 0.01 | Jul 11, 2023 | Microsoft Outlook Spoofing Vulnerability | ||
| CVE-2023-35311 | 0.12 | — | 0.00 | KEV | Jul 11, 2023 | Microsoft Outlook Security Feature Bypass Vulnerability | ||
| CVE-2018-8587 | 0.04 | — | 0.47 | Dec 12, 2018 | A remote code execution vulnerability exists in Microsoft Outlook software when it fails to properly handle objects in memory, aka "Microsoft Outlook Remote Code Execution Vulnerability." This affects Office 365 ProPlus, Microsoft Office, Microsoft Outlook. | |||
| CVE-2023-33131 | 0.03 | — | 0.03 | Jun 13, 2023 | Microsoft Outlook Remote Code Execution Vulnerability | |||
| CVE-2020-0760 | 0.03 | — | 0.33 | Apr 15, 2020 | A remote code execution vulnerability exists when Microsoft Office improperly loads arbitrary type libraries, aka 'Microsoft Office Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0991. | |||
| CVE-2020-1349 | 0.02 | — | 0.26 | Jul 14, 2020 | A remote code execution vulnerability exists in Microsoft Outlook software when it fails to properly handle objects in memory, aka 'Microsoft Outlook Remote Code Execution Vulnerability'. | |||
| CVE-2019-0559 | 0.02 | — | 0.26 | Jan 8, 2019 | An information disclosure vulnerability exists when Microsoft Outlook improperly handles certain types of messages, aka "Microsoft Outlook Information Disclosure Vulnerability." This affects Office 365 ProPlus, Microsoft Office, Microsoft Outlook. | |||
| CVE-2018-8576 | 0.02 | — | 0.29 | Nov 14, 2018 | A remote code execution vulnerability exists in Microsoft Outlook software when it fails to properly handle objects in memory, aka "Microsoft Outlook Remote Code Execution Vulnerability." This affects Office 365 ProPlus, Microsoft Office, Microsoft Outlook. This CVE ID is unique… | |||
| CVE-2018-8582 | 0.02 | — | 0.31 | Nov 14, 2018 | A remote code execution vulnerability exists in the way that Microsoft Outlook parses specially modified rule export files, aka "Microsoft Outlook Remote Code Execution Vulnerability." This affects Office 365 ProPlus, Microsoft Office, Microsoft Outlook. This CVE ID is unique… | |||
| CVE-2018-8524 | 0.02 | — | 0.29 | Nov 14, 2018 | A remote code execution vulnerability exists in Microsoft Outlook software when it fails to properly handle objects in memory, aka "Microsoft Outlook Remote Code Execution Vulnerability." This affects Office 365 ProPlus, Microsoft Office, Microsoft Outlook. This CVE ID is unique… | |||
| CVE-2018-8522 | 0.02 | — | 0.29 | Nov 14, 2018 | A remote code execution vulnerability exists in Microsoft Outlook software when it fails to properly handle objects in memory, aka "Microsoft Outlook Remote Code Execution Vulnerability." This affects Office 365 ProPlus, Microsoft Office, Microsoft Outlook. This CVE ID is unique… | |||
| CVE-2019-1084 | 0.01 | — | 0.09 | Jul 15, 2019 | An information disclosure vulnerability exists when Exchange allows creation of entities with Display Names having non-printable characters. An authenticated attacker could exploit this vulnerability by creating entities with invalid display names, which, when added to… | |||
| CVE-2018-8244 | 0.01 | — | 0.17 | Jun 14, 2018 | An elevation of privilege vulnerability exists when Microsoft Outlook does not validate attachment headers properly, aka "Microsoft Outlook Elevation of Privilege Vulnerability." This affects Microsoft Office, Microsoft Outlook. | |||
| CVE-2022-23280 | 0.00 | — | 0.03 | Feb 9, 2022 | Microsoft Outlook for Mac Security Feature Bypass Vulnerability | |||
| CVE-2020-0696 | 0.00 | — | 0.04 | Feb 11, 2020 | A security feature bypass vulnerability exists in Microsoft Outlook software when it improperly handles the parsing of URI formats, aka 'Microsoft Outlook Security Feature Bypass Vulnerability'. |
- risk 0.42cvss 6.5epss 0.01
Microsoft Outlook Spoofing Vulnerability
- risk 0.12cvss —epss 0.00
Microsoft Outlook Security Feature Bypass Vulnerability
- CVE-2018-8587Dec 12, 2018risk 0.04cvss —epss 0.47
A remote code execution vulnerability exists in Microsoft Outlook software when it fails to properly handle objects in memory, aka "Microsoft Outlook Remote Code Execution Vulnerability." This affects Office 365 ProPlus, Microsoft Office, Microsoft Outlook.
- CVE-2023-33131Jun 13, 2023risk 0.03cvss —epss 0.03
Microsoft Outlook Remote Code Execution Vulnerability
- CVE-2020-0760Apr 15, 2020risk 0.03cvss —epss 0.33
A remote code execution vulnerability exists when Microsoft Office improperly loads arbitrary type libraries, aka 'Microsoft Office Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0991.
- CVE-2020-1349Jul 14, 2020risk 0.02cvss —epss 0.26
A remote code execution vulnerability exists in Microsoft Outlook software when it fails to properly handle objects in memory, aka 'Microsoft Outlook Remote Code Execution Vulnerability'.
- CVE-2019-0559Jan 8, 2019risk 0.02cvss —epss 0.26
An information disclosure vulnerability exists when Microsoft Outlook improperly handles certain types of messages, aka "Microsoft Outlook Information Disclosure Vulnerability." This affects Office 365 ProPlus, Microsoft Office, Microsoft Outlook.
- CVE-2018-8576Nov 14, 2018risk 0.02cvss —epss 0.29
A remote code execution vulnerability exists in Microsoft Outlook software when it fails to properly handle objects in memory, aka "Microsoft Outlook Remote Code Execution Vulnerability." This affects Office 365 ProPlus, Microsoft Office, Microsoft Outlook. This CVE ID is unique…
- CVE-2018-8582Nov 14, 2018risk 0.02cvss —epss 0.31
A remote code execution vulnerability exists in the way that Microsoft Outlook parses specially modified rule export files, aka "Microsoft Outlook Remote Code Execution Vulnerability." This affects Office 365 ProPlus, Microsoft Office, Microsoft Outlook. This CVE ID is unique…
- CVE-2018-8524Nov 14, 2018risk 0.02cvss —epss 0.29
A remote code execution vulnerability exists in Microsoft Outlook software when it fails to properly handle objects in memory, aka "Microsoft Outlook Remote Code Execution Vulnerability." This affects Office 365 ProPlus, Microsoft Office, Microsoft Outlook. This CVE ID is unique…
- CVE-2018-8522Nov 14, 2018risk 0.02cvss —epss 0.29
A remote code execution vulnerability exists in Microsoft Outlook software when it fails to properly handle objects in memory, aka "Microsoft Outlook Remote Code Execution Vulnerability." This affects Office 365 ProPlus, Microsoft Office, Microsoft Outlook. This CVE ID is unique…
- CVE-2019-1084Jul 15, 2019risk 0.01cvss —epss 0.09
An information disclosure vulnerability exists when Exchange allows creation of entities with Display Names having non-printable characters. An authenticated attacker could exploit this vulnerability by creating entities with invalid display names, which, when added to…
- CVE-2018-8244Jun 14, 2018risk 0.01cvss —epss 0.17
An elevation of privilege vulnerability exists when Microsoft Outlook does not validate attachment headers properly, aka "Microsoft Outlook Elevation of Privilege Vulnerability." This affects Microsoft Office, Microsoft Outlook.
- CVE-2022-23280Feb 9, 2022risk 0.00cvss —epss 0.03
Microsoft Outlook for Mac Security Feature Bypass Vulnerability
- CVE-2020-0696Feb 11, 2020risk 0.00cvss —epss 0.04
A security feature bypass vulnerability exists in Microsoft Outlook software when it improperly handles the parsing of URI formats, aka 'Microsoft Outlook Security Feature Bypass Vulnerability'.