VYPR

Windows OLE

by Microsoft

CVEs (10)

  • CVE-2025-21298CriJan 14, 2025
    risk 0.70cvss 9.8epss 0.81

    Windows OLE Remote Code Execution Vulnerability

  • CVE-2017-8487HigJun 15, 2017
    risk 0.59cvss 7.8epss 0.54

    Windows OLE in Windows XP and Windows Server 2003 allows an attacker to execute code when a victim opens a specially crafted file or program aka "Windows olecnv32.dll Remote Code Execution Vulnerability."

  • CVE-2020-1281HigJun 9, 2020
    risk 0.58cvss 8.8epss 0.14

    A remote code execution vulnerability exists when Microsoft Windows OLE fails to properly validate user input, aka 'Windows OLE Remote Code Execution Vulnerability'.

  • CVE-2024-21372HigFeb 13, 2024
    risk 0.57cvss 8.8epss 0.02

    Windows OLE Remote Code Execution Vulnerability

  • CVE-2026-26162HigApr 14, 2026
    risk 0.51cvss 7.8epss 0.00

    Access of resource using incompatible type ('type confusion') in Windows OLE allows an authorized attacker to elevate privileges locally.

  • CVE-2025-60714HigNov 11, 2025
    risk 0.51cvss 7.8epss 0.01

    Heap-based buffer overflow in Windows OLE allows an unauthorized attacker to execute code locally.

  • CVE-2024-38152HigAug 13, 2024
    risk 0.51cvss 7.8epss 0.01

    Windows OLE Remote Code Execution Vulnerability

  • CVE-2023-35323HigJul 11, 2023
    risk 0.51cvss 7.8epss 0.01

    Windows OLE Remote Code Execution Vulnerability

  • CVE-2019-1484HigDec 10, 2019
    risk 0.51cvss 7.8epss 0.09

    A remote code execution vulnerability exists when Microsoft Windows OLE fails to properly validate user input, aka 'Windows OLE Remote Code Execution Vulnerability'.

  • CVE-2017-0211MedApr 12, 2017
    risk 0.40cvss 5.5epss 0.14

    An elevation of privilege vulnerability exists in Windows 10, Windows 8.1, Windows RT 8.1, Windows Server 2012, Windows Server 2012 R2, and Windows Server 2016 versions of Microsoft Windows OLE when it fails an integrity-level check, aka "Windows OLE Elevation of Privilege…