VYPR

Office For Mac

by Microsoft

CVEs (261)

  • CVE-2023-21716CriFeb 14, 2023
    risk 0.70cvss 9.8epss 0.82

    Microsoft Word Remote Code Execution Vulnerability

  • CVE-2013-1331HigKEVJun 12, 2013
    risk 0.69cvss 7.8epss 0.82

    Buffer overflow in Microsoft Office 2003 SP3 and Office 2011 for Mac allows remote attackers to execute arbitrary code via crafted PNG data in an Office document, leading to improper memory allocation, aka "Office Buffer Overflow Vulnerability."

  • CVE-2009-0563HigKEVJun 10, 2009
    risk 0.68cvss 7.8epss 0.63

    Stack-based buffer overflow in Microsoft Office Word 2002 SP3, 2003 SP3, and 2007 SP1 and SP2; Microsoft Office for Mac 2004 and 2008; Open XML File Format Converter for Mac; Microsoft Office Word Viewer 2003 SP3; Microsoft Office Word Viewer; and Microsoft Office Compatibility…

  • CVE-2025-60724CriNov 11, 2025
    risk 0.64cvss 9.8epss 0.06

    Heap-based buffer overflow in Microsoft Graphics Component allows an unauthorized attacker to execute code over a network.

  • CVE-2025-53766CriAug 12, 2025
    risk 0.64cvss 9.8epss 0.07

    Heap-based buffer overflow in Windows GDI+ allows an unauthorized attacker to execute code over a network.

  • CVE-2026-21514HigKEVFeb 10, 2026
    risk 0.63cvss 7.8epss 0.02

    Reliance on untrusted inputs in a security decision in Microsoft Office Word allows an unauthorized attacker to bypass a security feature locally.

  • CVE-2023-21823HigKEVFeb 14, 2023
    risk 0.63cvss 7.8epss 0.06

    Windows Graphics Component Remote Code Execution Vulnerability

  • CVE-2018-8332HigSep 13, 2018
    risk 0.59cvss 8.8epss 0.19

    A remote code execution vulnerability exists when the Windows font library improperly handles specially crafted embedded fonts, aka "Win32k Graphics Remote Code Execution Vulnerability." This affects Windows 7, Microsoft Office, Windows Server 2012 R2, Windows RT 8.1, Windows…

  • CVE-2018-8176HigMay 23, 2018
    risk 0.59cvss 8.8epss 0.23

    A remote code execution vulnerability exists in Microsoft PowerPoint software when the software fails to properly validate XML content, aka "Microsoft PowerPoint Remote Code Execution Vulnerability." This affects Microsoft Office.

  • CVE-2023-29330HigAug 8, 2023
    risk 0.57cvss 8.8epss 0.02

    Microsoft Teams Remote Code Execution Vulnerability

  • CVE-2023-29328HigAug 8, 2023
    risk 0.57cvss 8.8epss 0.02

    Microsoft Teams Remote Code Execution Vulnerability

  • CVE-2022-21840HigJan 11, 2022
    risk 0.57cvss 8.8epss 0.03

    Microsoft Office Remote Code Execution Vulnerability

  • CVE-2026-26113HigMar 10, 2026
    risk 0.55cvss 8.4epss 0.01

    Untrusted pointer dereference in Microsoft Office allows an unauthorized attacker to execute code locally.

  • CVE-2026-26110HigMar 10, 2026
    risk 0.55cvss 8.4epss 0.00

    Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally.

  • CVE-2026-26109HigMar 10, 2026
    risk 0.55cvss 8.4epss 0.00

    Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

  • CVE-2026-20953HigJan 13, 2026
    risk 0.55cvss 8.4epss 0.01

    Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

  • CVE-2026-20952HigJan 13, 2026
    risk 0.55cvss 8.4epss 0.01

    Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

  • CVE-2026-20944HigJan 13, 2026
    risk 0.55cvss 8.4epss 0.01

    Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to execute code locally.

  • CVE-2025-62557HigDec 9, 2025
    risk 0.55cvss 8.4epss 0.00

    Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

  • CVE-2025-62554HigDec 9, 2025
    risk 0.55cvss 8.4epss 0.00

    Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally.

Page 1 of 14