Home/Product/microsoft office online server
Product

microsoft office online server

185 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2026-32199
< 16.0.10417.20113
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2026-32198
< 16.0.10417.20113
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2026-32197
< 16.0.10417.20113
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2026-32189
all versions
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2026-32188
all versions
Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.
7.1HIGH
CVE-2026-26112
< 16.0.10417.20102
Untrusted pointer dereference in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2026-26109
< 16.0.10417.20102
Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
8.4HIGH
CVE-2026-26108
< 16.0.10417.20102
Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2026-26107
< 16.0.10417.20102
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2026-21261
< 16.0.10417.20097
Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.
5.5MEDIUM
CVE-2026-21259
< 16.0.10417.20097
Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to elevate privileges locally.
7.8HIGH
CVE-2026-21258
< 16.0.10417.20097
Improper input validation in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.
5.5MEDIUM
CVE-2026-20957
< 16.0.10417.20083
Integer underflow (wrap or wraparound) in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2026-20955
< 16.0.10417.20083
Untrusted pointer dereference in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2026-20950
< 16.0.10417.20083
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2025-62564
< 16.0.10417.20075
Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2025-62563
< 16.0.10417.20075
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2025-62561
< 16.0.10417.20075
Untrusted pointer dereference in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2025-62560
< 16.0.10417.20075
Untrusted pointer dereference in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2025-62556
< 16.0.10417.20075
Untrusted pointer dereference in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2025-62203
< 16.0.10417.20068
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2025-62202
< 16.0.10417.20068
Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.
7.1HIGH
CVE-2025-62201
< 16.0.10417.20068
Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2025-62200
< 16.0.10417.20068
Untrusted pointer dereference in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2025-60727
< 16.0.10417.20068
Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2025-60726
< 16.0.10417.20068
Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.
7.1HIGH
CVE-2025-59236
< 16.0.10417.20059
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
8.4HIGH
CVE-2025-59235
< 16.0.10417.20059
Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.
7.1HIGH
CVE-2025-59233
< 16.0.10417.20059
Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an unauthorized attacker to execute
7.8HIGH
CVE-2025-59232
< 16.0.10417.20059
Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.
7.1HIGH
CVE-2025-59231
< 16.0.10417.20059
Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an unauthorized attacker to execute
7.8HIGH
CVE-2025-59225
< 16.0.10417.20059
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2025-59224
< 16.0.10417.20059
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2025-59223
< 16.0.10417.20059
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2025-54904
< 16.0.10417.20047
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2025-54903
< 16.0.10417.20047
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2025-54902
< 16.0.10417.20047
Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2025-54900
< 16.0.10417.20047
Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2025-54898
< 16.0.10417.20047
Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2025-54896
< 16.0.10417.20047
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2025-53759
all versions
Use of uninitialized resource in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2025-53741
all versions
Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2025-53739
all versions
Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an unauthorized attacker to execute
7.8HIGH
CVE-2025-53737
all versions
Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2025-53735
all versions
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2025-49711
< 16.0.10417.20027
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2025-49697
< 16.0.10417.20027
Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.
8.4HIGH
CVE-2025-48812
< 16.0.10417.20027
Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.
5.5MEDIUM
CVE-2025-47165
< 16.0.10417.20018
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2025-30383
< 16.0.10417.20010
Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an unauthorized attacker to execute
7.8HIGH
CVE-2025-30381
< 16.0.10417.20010
Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2025-30379
< 16.0.10417.20010
Release of invalid pointer or reference in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2025-30377
< 16.0.10417.20010
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
8.4HIGH
CVE-2025-30376
< 16.0.10417.20010
Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2025-30375
< 16.0.10417.20010
Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an unauthorized attacker to execute
7.8HIGH
CVE-2025-29979
< 16.0.10417.20010
Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2025-29977
< 16.0.10417.20010
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2025-27751
all versions
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2025-27746
all versions
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2025-26642
all versions
Out-of-bounds read in Microsoft Office allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2025-24082
all versions
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2025-24081
all versions
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2025-24075
all versions
Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2025-21394
< 16.0.10416.20058
Microsoft Excel Remote Code Execution Vulnerability
7.8HIGH
CVE-2025-21390
< 16.0.10416.20058
Microsoft Excel Remote Code Execution Vulnerability
7.8HIGH
CVE-2025-21387
< 16.0.10416.20058
Microsoft Excel Remote Code Execution Vulnerability
7.8HIGH
CVE-2025-21386
< 16.0.10416.20058
Microsoft Excel Remote Code Execution Vulnerability
7.8HIGH
CVE-2025-21381
< 16.0.10416.20058
Microsoft Excel Remote Code Execution Vulnerability
7.8HIGH
CVE-2025-21362
< 16.0.10416.20047
Microsoft Excel Remote Code Execution Vulnerability
8.4HIGH
CVE-2025-21354
< 16.0.10416.20047
Microsoft Excel Remote Code Execution Vulnerability
8.4HIGH
CVE-2024-49026
all versions
Microsoft Excel Remote Code Execution Vulnerability
7.8HIGH
CVE-2024-43465
< 16.0.10414.20000
Microsoft Excel Elevation of Privilege Vulnerability
7.8HIGH
CVE-2024-30042
< 16.0.10410.20003
Microsoft Excel Remote Code Execution Vulnerability
7.8HIGH
CVE-2023-36766
all versions
Microsoft Excel Information Disclosure Vulnerability
7.8HIGH
CVE-2023-36896
all versions
Microsoft Excel Remote Code Execution Vulnerability
7.8HIGH
CVE-2023-35371
all versions
Microsoft Office Remote Code Execution Vulnerability
7.8HIGH
CVE-2023-33162
all versions
Microsoft Excel Information Disclosure Vulnerability
5.5MEDIUM
CVE-2023-33137
all versions
Microsoft Excel Remote Code Execution Vulnerability
7.8HIGH
CVE-2023-33133
all versions
Microsoft Excel Remote Code Execution Vulnerability
7.8HIGH
CVE-2023-32029
all versions
Microsoft Excel Remote Code Execution Vulnerability
7.8HIGH
CVE-2023-24953
all versions
Microsoft Excel Remote Code Execution Vulnerability
7.8HIGH
CVE-2023-23399
all versions
Microsoft Excel Remote Code Execution Vulnerability
7.8HIGH
CVE-2023-23396
all versions
Microsoft Excel Denial of Service Vulnerability
6.5MEDIUM
CVE-2023-21716
all versions
Microsoft Word Remote Code Execution Vulnerability
9.8CRITICAL
CVE-2022-41106
all versions
Microsoft Excel Remote Code Execution Vulnerability
8.8HIGH
CVE-2022-41103
all versions
Microsoft Word Information Disclosure Vulnerability
5.5MEDIUM
CVE-2022-41063
all versions
Microsoft Excel Remote Code Execution Vulnerability
7.8HIGH
CVE-2022-41061
all versions
Microsoft Word Remote Code Execution Vulnerability
7.8HIGH
CVE-2022-41060
all versions
Microsoft Word Information Disclosure Vulnerability
5.5MEDIUM
CVE-2022-33648
all versions
Microsoft Excel Remote Code Execution Vulnerability
7.8HIGH
CVE-2022-30172
all versions
Microsoft Office Information Disclosure Vulnerability
5.5MEDIUM
CVE-2022-30171
all versions
Microsoft Office Information Disclosure Vulnerability
5.5MEDIUM
CVE-2022-30159
all versions
Microsoft Office Information Disclosure Vulnerability
5.5MEDIUM
CVE-2022-29109
all versions
Microsoft Excel Remote Code Execution Vulnerability
7.8HIGH
CVE-2022-26901
all versions
Microsoft Excel Remote Code Execution Vulnerability
7.8HIGH
CVE-2022-22716
all versions
Microsoft Excel Information Disclosure Vulnerability
5.5MEDIUM
CVE-2022-21840
all versions
Microsoft Office Remote Code Execution Vulnerability
8.8HIGH
CVE-2021-43256
all versions
Microsoft Excel Remote Code Execution Vulnerability
7.8HIGH
CVE-2021-40442
all versions
Microsoft Excel Remote Code Execution Vulnerability
7.8HIGH
CVE-2021-40486
all versions
Microsoft Word Remote Code Execution Vulnerability
7.8HIGH
CVE-2021-40485
all versions
Microsoft Excel Remote Code Execution Vulnerability
7.8HIGH
CVE-2021-40474
all versions
Microsoft Excel Remote Code Execution Vulnerability
7.8HIGH
CVE-2021-40472
all versions
Microsoft Excel Information Disclosure Vulnerability
5.5MEDIUM
CVE-2021-38655
all versions
Microsoft Excel Remote Code Execution Vulnerability
7.8HIGH
CVE-2021-34451
all versions
Microsoft Office Online Server Spoofing Vulnerability
5.3MEDIUM
CVE-2021-34501
all versions
Microsoft Excel Remote Code Execution Vulnerability
7.8HIGH
CVE-2021-31939
all versions
Microsoft Excel Remote Code Execution Vulnerability
7.8HIGH
CVE-2021-31179
all versions
Microsoft Office Remote Code Execution Vulnerability
7.8HIGH
CVE-2021-31178
all versions
Microsoft Office Information Disclosure Vulnerability
5.5MEDIUM
CVE-2021-31177
all versions
Microsoft Office Remote Code Execution Vulnerability
7.8HIGH
CVE-2021-31176
all versions
Microsoft Office Remote Code Execution Vulnerability
7.8HIGH
CVE-2021-31175
all versions
Microsoft Office Remote Code Execution Vulnerability
7.8HIGH
CVE-2021-31174
all versions
Microsoft Excel Information Disclosure Vulnerability
5.5MEDIUM
CVE-2021-28456
all versions
Microsoft Excel Information Disclosure Vulnerability
5.5MEDIUM
CVE-2021-28454
all versions
Microsoft Excel Remote Code Execution Vulnerability
7.8HIGH
CVE-2021-28453
all versions
Microsoft Word Remote Code Execution Vulnerability
7.8HIGH
CVE-2021-28451
all versions
Microsoft Excel Remote Code Execution Vulnerability
7.8HIGH
CVE-2021-27057
all versions
Microsoft Office Remote Code Execution Vulnerability
7.8HIGH
CVE-2021-27054
all versions
Microsoft Excel Remote Code Execution Vulnerability
7.8HIGH
CVE-2021-27053
all versions
Microsoft Excel Remote Code Execution Vulnerability
7.8HIGH
CVE-2021-24070
all versions
Microsoft Excel Remote Code Execution Vulnerability
7.8HIGH
CVE-2021-24069
all versions
Microsoft Excel Remote Code Execution Vulnerability
7.8HIGH
CVE-2021-24067
all versions
Microsoft Excel Remote Code Execution Vulnerability
7.8HIGH
CVE-2021-1716
all versions
Microsoft Word Remote Code Execution Vulnerability
7.8HIGH
CVE-2021-1715
all versions
Microsoft Word Remote Code Execution Vulnerability
7.8HIGH
CVE-2021-1714
all versions
Microsoft Excel Remote Code Execution Vulnerability
7.8HIGH
CVE-2021-1713
all versions
Microsoft Excel Remote Code Execution Vulnerability
7.8HIGH
CVE-2020-17129
all versions
Microsoft Excel Remote Code Execution Vulnerability
7.8HIGH
CVE-2020-17128
all versions
Microsoft Excel Remote Code Execution Vulnerability
7.8HIGH
CVE-2020-17126
all versions
Microsoft Excel Information Disclosure Vulnerability
5.5MEDIUM
CVE-2020-17125
all versions
Microsoft Excel Remote Code Execution Vulnerability
7.8HIGH
CVE-2020-17123
all versions
Microsoft Excel Remote Code Execution Vulnerability
7.8HIGH
CVE-2020-17065
all versions
Microsoft Excel Remote Code Execution Vulnerability
7.8HIGH
CVE-2020-16932
all versions
<p>A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in
7.8HIGH
CVE-2020-16931
all versions
<p>A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in
7.8HIGH
CVE-2020-16929
all versions
<p>A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in
7.8HIGH
CVE-2020-1338
all versions
<p>A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory. An
7.8HIGH
CVE-2020-1335
all versions
<p>A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in
7.8HIGH
CVE-2020-1224
all versions
<p>An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory. An attacke
5.5MEDIUM
CVE-2020-1218
all versions
<p>A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory. An
7.8HIGH
CVE-2020-1583
all versions
An information disclosure vulnerability exists when Microsoft Word improperly discloses the contents of its memory. An attacker wh
8.8HIGH
CVE-2020-1503
all versions
An information disclosure vulnerability exists when Microsoft Word improperly discloses the contents of its memory. An attacker wh
5.5MEDIUM
CVE-2020-1502
all versions
An information disclosure vulnerability exists when Microsoft Word improperly discloses the contents of its memory. An attacker wh
5.5MEDIUM
CVE-2020-1495
all versions
A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in mem
8.8HIGH
CVE-2020-1448
all versions
A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory, aka 'M
8.8HIGH
CVE-2020-1447
all versions
A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory, aka 'M
8.8HIGH
CVE-2020-1446
all versions
A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory, aka 'M
8.8HIGH
CVE-2020-1445
all versions
An information disclosure vulnerability exists when Microsoft Office improperly discloses the contents of its memory, aka 'Microso
5.5MEDIUM
CVE-2020-1442
all versions
A spoofing vulnerability exists when an Office Web Apps server does not properly sanitize a specially crafted request, aka 'Office
6.1MEDIUM
CVE-2020-1342
all versions
An information disclosure vulnerability exists when Microsoft Office software reads out of bound memory due to an uninitialized va
5.5MEDIUM
CVE-2020-0980
all versions
A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory, aka 'M
7.8HIGH
CVE-2020-0892
all versions
A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory, aka 'M
7.8HIGH
CVE-2020-0852
all versions
A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory, aka 'M
7.8HIGH
CVE-2020-0850
all versions
A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory, aka 'M
8.8HIGH
CVE-2020-0695
all versions
A spoofing vulnerability exists when Office Online Server does not validate origin in cross-origin communications correctly, aka '
5.4MEDIUM
CVE-2020-0647
all versions
A spoofing vulnerability exists when Office Online does not validate origin in cross-origin communications correctly, aka 'Microso
5.4MEDIUM
CVE-2019-1447
all versions
A spoofing vulnerability exists when Office Online does not validate origin in cross-origin communications handlers correctly, aka
5.4MEDIUM
CVE-2019-1446
all versions
An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka 'Microsof
5.5MEDIUM
CVE-2019-1445
all versions
A spoofing vulnerability exists when Office Online does not validate origin in cross-origin communications handlers correctly, aka
5.4MEDIUM
CVE-2019-1331
all versions
A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in mem
8.8HIGH
CVE-2019-1205
all versions
A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory. An att
9.8CRITICAL
CVE-2019-1201
all versions
A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory. An att
7.8HIGH
CVE-2019-1035
all versions
A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory. An att
7.8HIGH
CVE-2019-1034
all versions
A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory. An att
7.8HIGH
CVE-2019-0953
all versions
A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory, aka 'M
7.8HIGH
CVE-2019-0585
all versions
A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory, aka "M
8.8HIGH
CVE-2018-8628
all versions
A remote code execution vulnerability exists in Microsoft PowerPoint software when the software fails to properly handle objects i
7.8HIGH
CVE-2018-8247
all versions
An elevation of privilege vulnerability exists when Office Web Apps Server 2013 and Office Online Server fail to properly handle w
5.4MEDIUM
CVE-2018-0922
all versions
Microsoft Office 2010 SP2, 2013 SP1, and 2016, Microsoft Office 2016 Click-to-Run Microsoft Office 2016 for Mac, Microsoft Office
7.8HIGH
CVE-2018-0919
all versions
Microsoft Office 2010 SP2, 2013 SP1, and 2016, Microsoft Office 2016 Click-to-Run Microsoft Office 2016 for Mac, Microsoft Office
3.3LOW
CVE-2018-0797
all versions
Microsoft Office 2010, Microsoft Office 2013, and Microsoft Office 2016 allow a remote code execution vulnerability due to the way
7.8HIGH
CVE-2018-0792
all versions
Microsoft Word 2016 in Microsoft Office 2016 allows a remote code execution vulnerability due to the way objects are handled in me
8.8HIGH
CVE-2017-11826
all versions
Microsoft Office 2010, SharePoint Enterprise Server 2010, SharePoint Server 2010, Web Applications, Office Web Apps Server 2010 an
7.8HIGH
CVE-2017-8743
all versions
A remote code execution vulnerability exists in Microsoft PowerPoint 2016, Microsoft SharePoint Enterprise Server 2016, and Office
7.8HIGH
CVE-2017-8631
all versions
A remote code execution vulnerability exists in Excel Services, Microsoft Excel 2007 Service Pack 3, Microsoft Excel 2010 Service
7.8HIGH
CVE-2017-8501
all versions
Microsoft Office allows a remote code execution vulnerability due to the way that it handles objects in memory, aka "Microsoft Off
7.8HIGH
CVE-2017-8512
all versions
A remote code execution vulnerability exists in Microsoft Office when the software fails to properly handle objects in memory, aka
8.8HIGH
CVE-2017-8511
all versions
A remote code execution vulnerability exists in Microsoft Office when the software fails to properly handle objects in memory, aka
7.8HIGH
CVE-2017-0281
all versions
Microsoft Office 2007 SP3, Office 2010 SP2, Office 2013 SP1, Office 2016, Office Online Server 2016, Office Web Apps 2010 SP2,Offi
7.8HIGH
CVE-2017-0195
all versions
Microsoft Excel Services on Microsoft SharePoint Server 2010 SP1 and SP2, Microsoft Excel Web Apps 2010 SP2, Microsoft Office Web
5.4MEDIUM
CVE-2016-3365
all versions
Microsoft Excel 2007 SP3, Excel 2010 SP2, Excel 2013 SP1, Excel 2013 RT SP1, Excel 2016, Office Compatibility Pack SP3, Excel View
7.8HIGH
CVE-2016-3362
all versions
Microsoft Excel 2007 SP3, Excel 2010 SP2, Excel 2013 SP1, Excel 2013 RT SP1, Excel 2016, Office Compatibility Pack SP3, Excel View
7.8HIGH
CVE-2016-3358
all versions
Microsoft Excel 2007 SP3, Excel 2010 SP2, Excel 2013 SP1, Excel 2013 RT SP1, Excel 2016, Excel 2016 for Mac, Office Compatibility
7.8HIGH
CVE-2016-3282
all versions
Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word 2013 SP1, Word 2013 RT SP1, Word 2016, Word for Mac 2011, Word 2016
7.8HIGH
CVE-2016-0025
all versions
Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word 2013 SP1, Word 2013 RT SP1, Office 2016, Word 2016, Word for Mac 201
7.3HIGH
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin