VYPR

Excel

by Microsoft

CVEs (531)

  • CVE-2024-43106HigDec 18, 2024
    risk 0.46cvss 7.1epss 0.01

    A library injection vulnerability exists in Microsoft Excel 16.83 for macOS. A specially crafted library can leverage Excel's access privileges, leading to a permission bypass. A malicious application could inject a library and start the program to trigger this vulnerability and…

  • CVE-2024-38170HigAug 13, 2024
    risk 0.46cvss 7.1epss 0.01

    Microsoft Excel Remote Code Execution Vulnerability

  • CVE-2023-23398HigMar 14, 2023
    risk 0.46cvss 7.1epss 0.01

    Microsoft Excel Spoofing Vulnerability

  • CVE-2023-23396MedMar 14, 2023
    risk 0.43cvss 6.5epss 0.04

    Microsoft Excel Denial of Service Vulnerability

  • CVE-2019-0669MedMar 5, 2019
    risk 0.43cvss 6.5epss 0.06

    An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka 'Microsoft Excel Information Disclosure Vulnerability'.

  • CVE-2026-70328MedAug 11, 2026
    risk 0.42cvss 6.5epss 0.01

    Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information over a network.

  • CVE-2026-70327MedAug 11, 2026
    risk 0.42cvss 6.5epss 0.01

    Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information over a network.

  • CVE-2020-17130MedDec 10, 2020
    risk 0.42cvss 6.5epss 0.02

    Microsoft Excel Security Feature Bypass Vulnerability

  • CVE-2026-64955MedAug 12, 2026
    risk 0.40cvss 6.1epss 0.00

    When Microsoft Excel imports a CSV file, it executes cells beginning with certain characters as formulas, giving such CSV files arbitrary execution.  Velociraptor fails to sanitize such cells when exporting to CSV from various places such as the GUI, offline collector or data…

  • CVE-2017-0194MedApr 12, 2017
    risk 0.38cvss 5.5epss 0.26

    Microsoft Excel 2007 SP3, Microsoft Excel 2010 SP2, and Office Compatibility Pack SP2 allow remote attackers to obtain sensitive information from process memory via a crafted Office document, aka "Microsoft Office Information Disclosure Vulnerability."

  • CVE-2021-31178MedMay 11, 2021
    risk 0.37cvss 5.5epss 0.16

    Microsoft Office Information Disclosure Vulnerability

  • CVE-2018-8429MedSep 13, 2018
    risk 0.37cvss 5.5epss 0.12

    An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka "Microsoft Excel Information Disclosure Vulnerability." This affects Microsoft Excel Viewer, Microsoft Office, Microsoft Excel.

  • CVE-2018-8382MedAug 15, 2018
    risk 0.37cvss 5.5epss 0.12

    An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka "Microsoft Excel Information Disclosure Vulnerability." This affects Microsoft Excel Viewer, Microsoft Office, Microsoft Excel.

  • CVE-2018-8246MedJun 14, 2018
    risk 0.37cvss 5.5epss 0.17

    An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka "Microsoft Excel Information Disclosure Vulnerability." This affects Microsoft Excel Viewer, Microsoft Office, Microsoft Excel.

  • CVE-2018-8163MedMay 9, 2018
    risk 0.37cvss 5.5epss 0.13

    An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka "Microsoft Excel Information Disclosure Vulnerability." This affects Microsoft Office, Microsoft Excel.

  • CVE-2016-7267MedDec 20, 2016
    risk 0.37cvss 5.5epss 0.19

    Microsoft Excel 2010 SP2, 2013 SP1, 2013 RT SP1, and 2016 misparses file formats, which makes it easier for remote attackers to execute arbitrary code via a crafted document, aka "Microsoft Office Security Feature Bypass Vulnerability."

  • CVE-2016-3279MedJul 13, 2016
    risk 0.37cvss 5.5epss 0.16

    Microsoft Office 2010 SP2, Excel 2010 SP2, PowerPoint 2010 SP2, Word 2010 SP2, Excel 2013 SP1, PowerPoint 2013 SP1, Word 2013 SP1, Excel 2013 RT SP1, PowerPoint 2013 RT SP1, Word 2013 RT SP1, Excel 2016, Word 2016, Word Automation Services on SharePoint Server 2010 SP2, and…

  • CVE-2026-68808MedAug 11, 2026
    risk 0.36cvss 5.5epss 0.00

    Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

  • CVE-2026-68802MedAug 11, 2026
    risk 0.36cvss 5.5epss 0.00

    Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

  • CVE-2026-68799MedAug 11, 2026
    risk 0.36cvss 5.5epss 0.00

    Use of uninitialized resource in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

Page 15 of 27