Office Visio
by Microsoft
CVEs (420)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2022-21841 | Hig | 0.51 | 7.8 | 0.03 | Jan 11, 2022 | Microsoft Excel Remote Code Execution Vulnerability | ||
| CVE-2021-40480 | Hig | 0.51 | 7.8 | 0.06 | Oct 13, 2021 | Microsoft Office Visio Remote Code Execution Vulnerability | ||
| CVE-2021-38654 | Hig | 0.51 | 7.8 | 0.06 | Sep 15, 2021 | Microsoft Office Visio Remote Code Execution Vulnerability | ||
| CVE-2021-38653 | Hig | 0.51 | 7.8 | 0.06 | Sep 15, 2021 | Microsoft Office Visio Remote Code Execution Vulnerability | ||
| CVE-2020-17129 | Hig | 0.51 | 7.8 | 0.03 | Dec 10, 2020 | Microsoft Excel Remote Code Execution Vulnerability | ||
| CVE-2020-17128 | Hig | 0.51 | 7.8 | 0.03 | Dec 10, 2020 | Microsoft Excel Remote Code Execution Vulnerability | ||
| CVE-2020-17125 | Hig | 0.51 | 7.8 | 0.03 | Dec 10, 2020 | Microsoft Excel Remote Code Execution Vulnerability | ||
| CVE-2020-17124 | Hig | 0.51 | 7.8 | 0.03 | Dec 10, 2020 | Microsoft PowerPoint Remote Code Execution Vulnerability | ||
| CVE-2020-17123 | Hig | 0.51 | 7.8 | 0.04 | Dec 10, 2020 | Microsoft Excel Remote Code Execution Vulnerability | ||
| CVE-2020-1449 | Hig | 0.51 | 7.8 | 0.05 | Jul 14, 2020 | A remote code execution vulnerability exists in Microsoft Project software when the software fails to check the source markup of a file, aka 'Microsoft Project Remote Code Execution Vulnerability'. | ||
| CVE-2019-1457 | Hig | 0.51 | 7.8 | 0.04 | Nov 12, 2019 | A security feature bypass vulnerability exists in Microsoft Office software by not enforcing macro settings on an Excel document, aka 'Microsoft Office Excel Security Feature Bypass'. | ||
| CVE-2019-1264 | Hig | 0.51 | 7.8 | 0.04 | Sep 11, 2019 | A security feature bypass vulnerability exists when Microsoft Office improperly handles input, aka 'Microsoft Office Security Feature Bypass Vulnerability'. | ||
| CVE-2019-1035 | Hig | 0.51 | 7.8 | 0.07 | Jun 12, 2019 | A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory. An attacker who successfully exploited the vulnerability could use a specially crafted file to perform actions in the security context of the current user.… | ||
| CVE-2019-1034 | Hig | 0.51 | 7.8 | 0.05 | Jun 12, 2019 | A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory. An attacker who successfully exploited the vulnerability could use a specially crafted file to perform actions in the security context of the current user.… | ||
| CVE-2018-8412 | Hig | 0.51 | 7.8 | 0.01 | Aug 15, 2018 | An elevation of privilege vulnerability exists when the Microsoft AutoUpdate (MAU) application for Mac improperly validates updates before executing them, aka "Microsoft (MAU) Office Elevation of Privilege Vulnerability." This affects Microsoft Office. | ||
| CVE-2026-21511 | Hig | 0.49 | 7.5 | 0.04 | Feb 10, 2026 | Deserialization of untrusted data in Microsoft Office Outlook allows an unauthorized attacker to perform spoofing over a network. | ||
| CVE-2026-21260 | Hig | 0.49 | 7.5 | 0.02 | Feb 10, 2026 | Exposure of sensitive information to an unauthorized actor in Microsoft Office Outlook allows an unauthorized attacker to perform spoofing over a network. | ||
| CVE-2025-55243 | Hig | 0.49 | 7.5 | 0.01 | Sep 9, 2025 | Exposure of sensitive information to an unauthorized actor in Microsoft Office Plus allows an unauthorized attacker to perform spoofing over a network. | ||
| CVE-2025-29816 | Hig | 0.49 | 7.5 | 0.00 | Apr 8, 2025 | Improper input validation in Microsoft Office Word allows an unauthorized attacker to bypass a security feature over a network. | ||
| CVE-2024-49033 | Hig | 0.49 | 7.5 | 0.02 | Nov 12, 2024 | Microsoft Word Security Feature Bypass Vulnerability |
- risk 0.51cvss 7.8epss 0.03
Microsoft Excel Remote Code Execution Vulnerability
- risk 0.51cvss 7.8epss 0.06
Microsoft Office Visio Remote Code Execution Vulnerability
- risk 0.51cvss 7.8epss 0.06
Microsoft Office Visio Remote Code Execution Vulnerability
- risk 0.51cvss 7.8epss 0.06
Microsoft Office Visio Remote Code Execution Vulnerability
- risk 0.51cvss 7.8epss 0.03
Microsoft Excel Remote Code Execution Vulnerability
- risk 0.51cvss 7.8epss 0.03
Microsoft Excel Remote Code Execution Vulnerability
- risk 0.51cvss 7.8epss 0.03
Microsoft Excel Remote Code Execution Vulnerability
- risk 0.51cvss 7.8epss 0.03
Microsoft PowerPoint Remote Code Execution Vulnerability
- risk 0.51cvss 7.8epss 0.04
Microsoft Excel Remote Code Execution Vulnerability
- risk 0.51cvss 7.8epss 0.05
A remote code execution vulnerability exists in Microsoft Project software when the software fails to check the source markup of a file, aka 'Microsoft Project Remote Code Execution Vulnerability'.
- risk 0.51cvss 7.8epss 0.04
A security feature bypass vulnerability exists in Microsoft Office software by not enforcing macro settings on an Excel document, aka 'Microsoft Office Excel Security Feature Bypass'.
- risk 0.51cvss 7.8epss 0.04
A security feature bypass vulnerability exists when Microsoft Office improperly handles input, aka 'Microsoft Office Security Feature Bypass Vulnerability'.
- risk 0.51cvss 7.8epss 0.07
A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory. An attacker who successfully exploited the vulnerability could use a specially crafted file to perform actions in the security context of the current user.…
- risk 0.51cvss 7.8epss 0.05
A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory. An attacker who successfully exploited the vulnerability could use a specially crafted file to perform actions in the security context of the current user.…
- risk 0.51cvss 7.8epss 0.01
An elevation of privilege vulnerability exists when the Microsoft AutoUpdate (MAU) application for Mac improperly validates updates before executing them, aka "Microsoft (MAU) Office Elevation of Privilege Vulnerability." This affects Microsoft Office.
- risk 0.49cvss 7.5epss 0.04
Deserialization of untrusted data in Microsoft Office Outlook allows an unauthorized attacker to perform spoofing over a network.
- risk 0.49cvss 7.5epss 0.02
Exposure of sensitive information to an unauthorized actor in Microsoft Office Outlook allows an unauthorized attacker to perform spoofing over a network.
- risk 0.49cvss 7.5epss 0.01
Exposure of sensitive information to an unauthorized actor in Microsoft Office Plus allows an unauthorized attacker to perform spoofing over a network.
- risk 0.49cvss 7.5epss 0.00
Improper input validation in Microsoft Office Word allows an unauthorized attacker to bypass a security feature over a network.
- risk 0.49cvss 7.5epss 0.02
Microsoft Word Security Feature Bypass Vulnerability
Page 16 of 21