Office Visio
by Microsoft
CVEs (412)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2020-17125 | 0.01 | — | 0.13 | Dec 9, 2020 | Microsoft Excel Remote Code Execution Vulnerability | |||
| CVE-2020-17124 | 0.01 | — | 0.13 | Dec 9, 2020 | Microsoft PowerPoint Remote Code Execution Vulnerability | |||
| CVE-2020-17123 | 0.01 | — | 0.12 | Dec 9, 2020 | Microsoft Excel Remote Code Execution Vulnerability | |||
| CVE-2020-17119 | 0.01 | — | 0.18 | Dec 9, 2020 | Microsoft Outlook Information Disclosure Vulnerability | |||
| CVE-2020-1449 | 0.01 | — | 0.15 | Jul 14, 2020 | A remote code execution vulnerability exists in Microsoft Project software when the software fails to check the source markup of a file, aka 'Microsoft Project Remote Code Execution Vulnerability'. | |||
| CVE-2020-1226 | 0.01 | — | 0.19 | Jun 9, 2020 | A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-1225. | |||
| CVE-2020-1229 | 0.01 | — | 0.11 | Jun 9, 2020 | A security feature bypass vulnerability exists in Microsoft Outlook when Office fails to enforce security settings configured on a system, aka 'Microsoft Outlook Security Feature Bypass Vulnerability'. | |||
| CVE-2020-1225 | 0.01 | — | 0.19 | Jun 9, 2020 | A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-1226. | |||
| CVE-2020-0652 | 0.01 | — | 0.17 | Jan 14, 2020 | A remote code execution vulnerability exists in Microsoft Office software when the software fails to properly handle objects in memory, aka 'Microsoft Office Memory Corruption Vulnerability'. | |||
| CVE-2019-1464 | 0.01 | — | 0.13 | Dec 10, 2019 | An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka 'Microsoft Excel Information Disclosure Vulnerability'. | |||
| CVE-2019-1461 | 0.01 | — | 0.17 | Dec 10, 2019 | A denial of service vulnerability exists in Microsoft Word software when the software fails to properly handle objects in memory, aka 'Microsoft Word Denial of Service Vulnerability'. | |||
| CVE-2019-1446 | 0.01 | — | 0.10 | Nov 12, 2019 | An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka 'Microsoft Excel Information Disclosure Vulnerability'. | |||
| CVE-2019-1264 | 0.01 | — | 0.08 | Sep 11, 2019 | A security feature bypass vulnerability exists when Microsoft Office improperly handles input, aka 'Microsoft Office Security Feature Bypass Vulnerability'. | |||
| CVE-2019-1263 | 0.01 | — | 0.16 | Sep 11, 2019 | An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka 'Microsoft Excel Information Disclosure Vulnerability'. | |||
| CVE-2019-1112 | 0.01 | — | 0.11 | Jul 29, 2019 | An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka 'Microsoft Excel Information Disclosure Vulnerability'. | |||
| CVE-2019-1109 | 0.01 | — | 0.08 | Jul 29, 2019 | A spoofing vulnerability exists when Microsoft Office Javascript does not check the validity of the web page making a request to Office documents.An attacker who successfully exploited this vulnerability could read or write information in Office documents.The security update… | |||
| CVE-2019-1084 | 0.01 | — | 0.09 | Jul 15, 2019 | An information disclosure vulnerability exists when Exchange allows creation of entities with Display Names having non-printable characters. An authenticated attacker could exploit this vulnerability by creating entities with invalid display names, which, when added to… | |||
| CVE-2019-1034 | 0.01 | — | 0.13 | Jun 12, 2019 | A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory. An attacker who successfully exploited the vulnerability could use a specially crafted file to perform actions in the security context of the current user.… | |||
| CVE-2019-1035 | 0.01 | — | 0.12 | Jun 12, 2019 | A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory. An attacker who successfully exploited the vulnerability could use a specially crafted file to perform actions in the security context of the current user.… | |||
| CVE-2018-8598 | 0.01 | — | 0.15 | Dec 12, 2018 | An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka "Microsoft Excel Information Disclosure Vulnerability." This affects Office 365 ProPlus, Microsoft Office, Microsoft Excel. This CVE ID is unique from… |
- CVE-2020-17125Dec 9, 2020risk 0.01cvss —epss 0.13
Microsoft Excel Remote Code Execution Vulnerability
- CVE-2020-17124Dec 9, 2020risk 0.01cvss —epss 0.13
Microsoft PowerPoint Remote Code Execution Vulnerability
- CVE-2020-17123Dec 9, 2020risk 0.01cvss —epss 0.12
Microsoft Excel Remote Code Execution Vulnerability
- CVE-2020-17119Dec 9, 2020risk 0.01cvss —epss 0.18
Microsoft Outlook Information Disclosure Vulnerability
- CVE-2020-1449Jul 14, 2020risk 0.01cvss —epss 0.15
A remote code execution vulnerability exists in Microsoft Project software when the software fails to check the source markup of a file, aka 'Microsoft Project Remote Code Execution Vulnerability'.
- CVE-2020-1226Jun 9, 2020risk 0.01cvss —epss 0.19
A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-1225.
- CVE-2020-1229Jun 9, 2020risk 0.01cvss —epss 0.11
A security feature bypass vulnerability exists in Microsoft Outlook when Office fails to enforce security settings configured on a system, aka 'Microsoft Outlook Security Feature Bypass Vulnerability'.
- CVE-2020-1225Jun 9, 2020risk 0.01cvss —epss 0.19
A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-1226.
- CVE-2020-0652Jan 14, 2020risk 0.01cvss —epss 0.17
A remote code execution vulnerability exists in Microsoft Office software when the software fails to properly handle objects in memory, aka 'Microsoft Office Memory Corruption Vulnerability'.
- CVE-2019-1464Dec 10, 2019risk 0.01cvss —epss 0.13
An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka 'Microsoft Excel Information Disclosure Vulnerability'.
- CVE-2019-1461Dec 10, 2019risk 0.01cvss —epss 0.17
A denial of service vulnerability exists in Microsoft Word software when the software fails to properly handle objects in memory, aka 'Microsoft Word Denial of Service Vulnerability'.
- CVE-2019-1446Nov 12, 2019risk 0.01cvss —epss 0.10
An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka 'Microsoft Excel Information Disclosure Vulnerability'.
- CVE-2019-1264Sep 11, 2019risk 0.01cvss —epss 0.08
A security feature bypass vulnerability exists when Microsoft Office improperly handles input, aka 'Microsoft Office Security Feature Bypass Vulnerability'.
- CVE-2019-1263Sep 11, 2019risk 0.01cvss —epss 0.16
An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka 'Microsoft Excel Information Disclosure Vulnerability'.
- CVE-2019-1112Jul 29, 2019risk 0.01cvss —epss 0.11
An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka 'Microsoft Excel Information Disclosure Vulnerability'.
- CVE-2019-1109Jul 29, 2019risk 0.01cvss —epss 0.08
A spoofing vulnerability exists when Microsoft Office Javascript does not check the validity of the web page making a request to Office documents.An attacker who successfully exploited this vulnerability could read or write information in Office documents.The security update…
- CVE-2019-1084Jul 15, 2019risk 0.01cvss —epss 0.09
An information disclosure vulnerability exists when Exchange allows creation of entities with Display Names having non-printable characters. An authenticated attacker could exploit this vulnerability by creating entities with invalid display names, which, when added to…
- CVE-2019-1034Jun 12, 2019risk 0.01cvss —epss 0.13
A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory. An attacker who successfully exploited the vulnerability could use a specially crafted file to perform actions in the security context of the current user.…
- CVE-2019-1035Jun 12, 2019risk 0.01cvss —epss 0.12
A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory. An attacker who successfully exploited the vulnerability could use a specially crafted file to perform actions in the security context of the current user.…
- CVE-2018-8598Dec 12, 2018risk 0.01cvss —epss 0.15
An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka "Microsoft Excel Information Disclosure Vulnerability." This affects Office 365 ProPlus, Microsoft Office, Microsoft Excel. This CVE ID is unique from…
Page 10 of 21