VYPR

Word

by Microsoft

CVEs (314)

  • CVE-2014-1757Apr 8, 2014
    risk 0.01cvss epss 0.17

    Microsoft Word 2007 SP3 and 2010 SP1 and SP2, and Office Compatibility Pack SP3, allocates memory incorrectly for file conversions from a binary (aka .doc) format to a newer format, which allows remote attackers to execute arbitrary code via a crafted document, aka "Microsoft…

  • CVE-2014-0260Jan 15, 2014
    risk 0.01cvss epss 0.15

    Microsoft Word 2003 SP3, 2007 SP3, 2010 SP1 and SP2, 2013, and 2013 RT; Office Compatibility Pack SP3; Word Viewer; SharePoint Server 2010 SP1 and SP2 and 2013; Office Web Apps 2010 SP1 and SP2; and Office Web Apps Server 2013 allow remote attackers to execute arbitrary code or…

  • CVE-2014-0259Jan 15, 2014
    risk 0.01cvss epss 0.16

    Microsoft Word 2007 SP3 and Office Compatibility Pack SP3 allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted Office document, aka "Word Memory Corruption Vulnerability."

  • CVE-2014-0258Jan 15, 2014
    risk 0.01cvss epss 0.16

    Microsoft Word 2003 SP3 and 2007 SP3, Office Compatibility Pack SP3, and Word Viewer allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted Office document, aka "Word Memory Corruption Vulnerability."

  • CVE-2013-6801Nov 18, 2013
    risk 0.01cvss epss 0.14

    Microsoft Word 2003 SP2 and SP3 on Windows XP SP3 allows remote attackers to cause a denial of service (CPU consumption) via a malformed .doc file containing an embedded image, as demonstrated by word2003forkbomb.doc, related to a "fork bomb" issue.

  • CVE-2013-3891Oct 9, 2013
    risk 0.01cvss epss 0.19

    Microsoft Word 2003 SP3 allows remote attackers to execute arbitrary code via a crafted Office document, aka "Memory Corruption Vulnerability."

  • CVE-2010-3200Sep 20, 2010
    risk 0.01cvss epss 0.11

    MSO.dll in Microsoft Word 2003 SP3 11.8326.11.8324 allows remote attackers to cause a denial of service (NULL pointer dereference and multiple-instance application crash) via a crafted buffer in a Word document, as demonstrated by word_crash_11.8326.8324_poc.doc.

  • CVE-2008-6063Feb 5, 2009
    risk 0.01cvss epss 0.10

    Microsoft Word 2007, when the "Save as PDF" add-on is enabled, places an absolute pathname in the Subject field during an "Email as PDF" operation, which allows remote attackers to obtain sensitive information such as the sender's account name and a Temporary Internet Files…

  • CVE-2006-3877Oct 10, 2006
    risk 0.01cvss epss 0.13

    Unspecified vulnerability in PowerPoint in Microsoft Office 2000, Office 2002, Office 2003, Office 2004 for Mac, and Office v.X for Mac allows user-assisted attackers to execute arbitrary code via an unspecified "crafted file," a different vulnerability than CVE-2006-3435,…

  • CVE-2006-0935Feb 28, 2006
    risk 0.01cvss epss 0.06

    Microsoft Word 2003 allows remote attackers to cause a denial of service (application crash) via a crafted file, as demonstrated by 101_filefuzz.

  • CVE-2005-1683May 20, 2005
    risk 0.01cvss epss 0.15

    Buffer overflow in winword.exe 10.2627.6714 and earlier in Microsoft Word for the Macintosh, before SP3 for Word 2002, allows remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted mcw file.

  • CVE-2005-0558May 2, 2005
    risk 0.01cvss epss 0.15

    Buffer overflow in Microsoft Word 2000, Word 2002, and Word 2003 allows remote attackers to execute arbitrary code via a crafted document.

  • CVE-2002-0619Aug 12, 2002
    risk 0.01cvss epss 0.16

    The Mail Merge Tool in Microsoft Word 2002 for Windows, when Microsoft Access is present on a system, allows remote attackers to execute Visual Basic (VBA) scripts within a mail merge document that is saved in HTML format, aka a "Variant of MS00-071, Word Mail Merge…

  • CVE-2002-1056May 16, 2002
    risk 0.01cvss epss 0.19

    Microsoft Outlook 2000 and 2002, when configured to use Microsoft Word as the email editor, does not block scripts that are used while editing email messages in HTML or Rich Text Format (RTF), which could allow remote attackers to execute arbitrary scripts via an email that the…

  • CVE-2000-0788Oct 20, 2000
    risk 0.01cvss epss 0.08

    The Mail Merge tool in Microsoft Word does not prompt the user before executing Visual Basic (VBA) scripts in an Access database, which could allow an attacker to execute arbitrary commands.

  • CVE-2026-55142MedJul 14, 2026
    risk 0.00cvss 5.5epss 0.00

    Numeric truncation error in Microsoft Office Word allows an unauthorized attacker to disclose information locally.

  • CVE-2026-55134HigJul 14, 2026
    risk 0.00cvss 7.8epss 0.00

    Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally.

  • CVE-2026-55132HigJul 14, 2026
    risk 0.00cvss 7.8epss 0.00

    Double free in Microsoft Office Word allows an unauthorized attacker to execute code locally.

  • CVE-2026-55130HigJul 14, 2026
    risk 0.00cvss 7.8epss 0.00

    Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally.

  • CVE-2026-55128HigJul 14, 2026
    risk 0.00cvss 7.8epss 0.00

    Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.

Page 15 of 16