VYPR

Office Excel

by Microsoft

CVEs (172)

  • CVE-2026-70327MedAug 11, 2026
    risk 0.42cvss 6.5epss 0.01

    Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information over a network.

  • CVE-2026-70318MedAug 11, 2026
    risk 0.36cvss 5.5epss 0.00

    Improper input validation in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

  • CVE-2026-68813MedAug 11, 2026
    risk 0.36cvss 5.5epss 0.00

    Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

  • CVE-2026-68808MedAug 11, 2026
    risk 0.36cvss 5.5epss 0.00

    Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

  • CVE-2026-68802MedAug 11, 2026
    risk 0.36cvss 5.5epss 0.00

    Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

  • CVE-2026-68799MedAug 11, 2026
    risk 0.36cvss 5.5epss 0.00

    Use of uninitialized resource in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

  • CVE-2026-68797MedAug 11, 2026
    risk 0.36cvss 5.5epss 0.00

    Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

  • CVE-2026-21261MedFeb 10, 2026
    risk 0.36cvss 5.5epss 0.01

    Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

  • CVE-2026-21258MedFeb 10, 2026
    risk 0.36cvss 5.5epss 0.01

    Improper input validation in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

  • CVE-2025-59240MedNov 11, 2025
    risk 0.36cvss 5.5epss 0.01

    Exposure of sensitive information to an unauthorized actor in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

  • CVE-2025-54901MedSep 9, 2025
    risk 0.36cvss 5.5epss 0.01

    Buffer over-read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

  • CVE-2025-48812MedJul 8, 2025
    risk 0.36cvss 5.5epss 0.01

    Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

  • CVE-2025-60728MedNov 11, 2025
    risk 0.28cvss 4.3epss 0.01

    Untrusted pointer dereference in Microsoft Office Excel allows an unauthorized attacker to disclose information over a network.

  • CVE-2026-45459LowJun 9, 2026
    risk 0.21cvss 3.3epss 0.00

    Protection mechanism failure in Microsoft Office Excel allows an unauthorized attacker to bypass a security feature locally.

  • CVE-2026-45455LowJun 9, 2026
    risk 0.21cvss 3.3epss 0.01

    Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information over a network.

  • CVE-2009-1134Jun 10, 2009
    risk 0.03cvss epss 0.36

    Excel in 2007 Microsoft Office System SP1 and SP2; Microsoft Office Excel Viewer; and Microsoft Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats SP1 and SP2 allow remote attackers to execute arbitrary code via a BIFF file with a malformed Qsir (0x806)…

  • CVE-2009-0561Jun 10, 2009
    risk 0.03cvss epss 0.37

    Integer overflow in Excel in Microsoft Office 2000 SP3, Office XP SP3, Office 2003 SP3, and Office 2004 and 2008 for Mac; Excel in 2007 Microsoft Office System SP1 and SP2; Open XML File Format Converter for Mac; Microsoft Office Excel Viewer 2003 SP3; Microsoft Office Excel…

  • CVE-2008-3005Aug 12, 2008
    risk 0.03cvss epss 0.32

    Array index vulnerability in Microsoft Office Excel 2000 SP3 and 2002 SP3, and Office 2004 and 2008 for Mac allows remote attackers to execute arbitrary code via an Excel file with a crafted array index for a FORMAT record, aka the "Excel Index Array Vulnerability."

  • CVE-2008-3006Aug 12, 2008
    risk 0.03cvss epss 0.36

    Microsoft Office Excel 2000 SP3, 2002 SP3, 2003 SP2 and SP3, and 2007 Gold and SP1; Office Excel Viewer 2003 Gold and SP3; Office Excel Viewer; Office Compatibility Pack 2007 Gold and SP1; Office SharePoint Server 2007 Gold and SP1; and Office 2004 and 2008 for Mac do not…

  • CVE-2008-3004Aug 12, 2008
    risk 0.03cvss epss 0.32

    Microsoft Office Excel 2000 SP3, 2002 SP3, and 2003 SP2 and SP3; Office Excel Viewer 2003; and Office 2004 and 2008 for Mac do not properly validate index values for AxesSet records when loading Excel files, which allows remote attackers to execute arbitrary code via a crafted…

Page 6 of 9