Office Long Term Servicing Channel
by Microsoft
CVEs (369)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2021-43256 | Hig | 0.51 | 7.8 | 0.02 | Dec 15, 2021 | Microsoft Excel Remote Code Execution Vulnerability | ||
| CVE-2021-42296 | Hig | 0.51 | 7.8 | 0.01 | Nov 10, 2021 | Microsoft Word Remote Code Execution Vulnerability | ||
| CVE-2021-40442 | Hig | 0.51 | 7.8 | 0.02 | Nov 10, 2021 | Microsoft Excel Remote Code Execution Vulnerability | ||
| CVE-2021-40485 | Hig | 0.51 | 7.8 | 0.03 | Oct 13, 2021 | Microsoft Excel Remote Code Execution Vulnerability | ||
| CVE-2021-40480 | Hig | 0.51 | 7.8 | 0.06 | Oct 13, 2021 | Microsoft Office Visio Remote Code Execution Vulnerability | ||
| CVE-2021-40479 | Hig | 0.51 | 7.8 | 0.02 | Oct 13, 2021 | Microsoft Excel Remote Code Execution Vulnerability | ||
| CVE-2021-40474 | Hig | 0.51 | 7.8 | 0.02 | Oct 13, 2021 | Microsoft Excel Remote Code Execution Vulnerability | ||
| CVE-2021-40473 | Hig | 0.51 | 7.8 | 0.02 | Oct 13, 2021 | Microsoft Excel Remote Code Execution Vulnerability | ||
| CVE-2021-40471 | Hig | 0.51 | 7.8 | 0.02 | Oct 13, 2021 | Microsoft Excel Remote Code Execution Vulnerability | ||
| CVE-2026-42832 | Hig | 0.50 | 7.7 | 0.00 | May 12, 2026 | Improper access control in Microsoft Office allows an unauthorized attacker to perform spoofing locally. | ||
| CVE-2026-21511 | Hig | 0.49 | 7.5 | 0.04 | Feb 10, 2026 | Deserialization of untrusted data in Microsoft Office Outlook allows an unauthorized attacker to perform spoofing over a network. | ||
| CVE-2026-21260 | Hig | 0.49 | 7.5 | 0.01 | Feb 10, 2026 | Exposure of sensitive information to an unauthorized actor in Microsoft Office Outlook allows an unauthorized attacker to perform spoofing over a network. | ||
| CVE-2025-29816 | Hig | 0.49 | 7.5 | 0.00 | Apr 8, 2025 | Improper input validation in Microsoft Office Word allows an unauthorized attacker to bypass a security feature over a network. | ||
| CVE-2024-49033 | Hig | 0.49 | 7.5 | 0.02 | Nov 12, 2024 | Microsoft Word Security Feature Bypass Vulnerability | ||
| CVE-2024-30101 | Hig | 0.49 | 7.5 | 0.02 | Jun 11, 2024 | Microsoft Office Remote Code Execution Vulnerability | ||
| CVE-2023-36763 | Hig | 0.49 | 7.5 | 0.02 | Sep 12, 2023 | Microsoft Outlook Information Disclosure Vulnerability | ||
| CVE-2023-29335 | Hig | 0.49 | 7.5 | 0.01 | May 9, 2023 | Microsoft Word Security Feature Bypass Vulnerability | ||
| CVE-2022-44713 | Hig | 0.49 | 7.5 | 0.01 | Dec 13, 2022 | Microsoft Outlook for Mac Spoofing Vulnerability | ||
| CVE-2025-29792 | Hig | 0.48 | 7.3 | 0.01 | Apr 8, 2025 | Use after free in Microsoft Office allows an authorized attacker to elevate privileges locally. | ||
| CVE-2023-36762 | Hig | 0.48 | 7.3 | 0.01 | Sep 12, 2023 | Microsoft Word Remote Code Execution Vulnerability |
- risk 0.51cvss 7.8epss 0.02
Microsoft Excel Remote Code Execution Vulnerability
- risk 0.51cvss 7.8epss 0.01
Microsoft Word Remote Code Execution Vulnerability
- risk 0.51cvss 7.8epss 0.02
Microsoft Excel Remote Code Execution Vulnerability
- risk 0.51cvss 7.8epss 0.03
Microsoft Excel Remote Code Execution Vulnerability
- risk 0.51cvss 7.8epss 0.06
Microsoft Office Visio Remote Code Execution Vulnerability
- risk 0.51cvss 7.8epss 0.02
Microsoft Excel Remote Code Execution Vulnerability
- risk 0.51cvss 7.8epss 0.02
Microsoft Excel Remote Code Execution Vulnerability
- risk 0.51cvss 7.8epss 0.02
Microsoft Excel Remote Code Execution Vulnerability
- risk 0.51cvss 7.8epss 0.02
Microsoft Excel Remote Code Execution Vulnerability
- risk 0.50cvss 7.7epss 0.00
Improper access control in Microsoft Office allows an unauthorized attacker to perform spoofing locally.
- risk 0.49cvss 7.5epss 0.04
Deserialization of untrusted data in Microsoft Office Outlook allows an unauthorized attacker to perform spoofing over a network.
- risk 0.49cvss 7.5epss 0.01
Exposure of sensitive information to an unauthorized actor in Microsoft Office Outlook allows an unauthorized attacker to perform spoofing over a network.
- risk 0.49cvss 7.5epss 0.00
Improper input validation in Microsoft Office Word allows an unauthorized attacker to bypass a security feature over a network.
- risk 0.49cvss 7.5epss 0.02
Microsoft Word Security Feature Bypass Vulnerability
- risk 0.49cvss 7.5epss 0.02
Microsoft Office Remote Code Execution Vulnerability
- risk 0.49cvss 7.5epss 0.02
Microsoft Outlook Information Disclosure Vulnerability
- risk 0.49cvss 7.5epss 0.01
Microsoft Word Security Feature Bypass Vulnerability
- risk 0.49cvss 7.5epss 0.01
Microsoft Outlook for Mac Spoofing Vulnerability
- risk 0.48cvss 7.3epss 0.01
Use after free in Microsoft Office allows an authorized attacker to elevate privileges locally.
- risk 0.48cvss 7.3epss 0.01
Microsoft Word Remote Code Execution Vulnerability
Page 15 of 19