VendorsMicrosoftexcel2016
Vulnerabilities

Microsoft Excel 2016

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

313CVEs
CVE-2016-3381
Microsoft Excel 2007 SP3, Excel 2010 SP2, Excel 2013 SP1, Excel 2013 RT SP1, Excel 2016, Office Compatibility Pack SP3, and Excel Viewer allow remote attackers to execute arbitrary code via a crafted document, aka "Microsoft Office Memory Corruption Vulnerability," a different vulnerability than CVE-2016-3363.
Published 2016-09-14 · Modified
9.3EPSS 0.150
CVE-2019-1327
A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-1331.
Published 2019-10-10 · Modified
9.3EPSS 0.140
CVE-2019-0828
A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'.
Published 2019-04-09 · Modified
9.3EPSS 0.137
CVE-2019-1110
A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-1111.
Published 2019-07-29 · Modified
9.3EPSS 0.132
CVE-2019-1111
A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-1110.
Published 2019-07-29 · Modified
9.3EPSS 0.132
CVE-2020-0906
A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0979.
Published 2020-04-15 · Modified
9.3EPSS 0.115
CVE-2017-11884
Microsoft Excel 2016 Click-to-Run (C2R) allows an attacker to run arbitrary code in the context of the current user by failing to properly handle objects in memory, aka "Microsoft Office Memory Corruption Vulnerability". This CVE ID is unique from CVE-2017-11882.
Published 2017-11-15 · Modified
9.3EPSS 0.095
CVE-2017-11878
Microsoft Excel 2007 Service Pack 3, Microsoft Excel 2010 Service Pack 2, Microsoft Excel 2013 Service Pack 1, Microsoft Excel 2013 RT Service Pack 1, Microsoft Excel 2016, Microsoft Office Compatibility Pack Service Pack 3, and Microsoft Excel Viewer 2007 Service Pack 3 allow an attacker to run arbitrary code in the context of the current user by failing to properly handle objects in memory, aka "Microsoft Excel Memory Corruption Vulnerability".
Published 2017-11-15 · Modified
9.3EPSS 0.062
CVE-2020-1495
Microsoft Excel Remote Code Execution Vulnerability
Published 2020-08-17 · Modified
9.3EPSS 0.042
CVE-2020-1496
Microsoft Excel Remote Code Execution Vulnerability
Published 2020-08-17 · Modified
9.3EPSS 0.042
CVE-2020-1494
Microsoft Excel Remote Code Execution Vulnerability
Published 2020-08-17 · Modified
9.3EPSS 0.042
CVE-2020-17065
Microsoft Excel Remote Code Execution Vulnerability
Published 2020-11-11 · Modified
9.3EPSS 0.041
CVE-2020-1498
Microsoft Excel Remote Code Execution Vulnerability
Published 2020-08-17 · Modified
9.3EPSS 0.039
CVE-2022-29110
Microsoft Excel Remote Code Execution Vulnerability
Published 2022-05-10 · Modified
9.3EPSS 0.037
CVE-2020-17123
Microsoft Excel Remote Code Execution Vulnerability
Published 2020-12-09 · Modified
9.3EPSS 0.036
CVE-2020-17125
Microsoft Excel Remote Code Execution Vulnerability
Published 2020-12-09 · Modified
9.3EPSS 0.035
CVE-2020-17129
Microsoft Excel Remote Code Execution Vulnerability
Published 2020-12-09 · Modified
9.3EPSS 0.035
CVE-2020-17128
Microsoft Excel Remote Code Execution Vulnerability
Published 2020-12-09 · Modified
9.3EPSS 0.027
CVE-2021-34501
Microsoft Excel Remote Code Execution Vulnerability
Published 2021-07-14 · Modified
8.8EPSS 0.514
CVE-2020-0760
A remote code execution vulnerability exists when Microsoft Office improperly loads arbitrary type libraries, aka 'Microsoft Office Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0991.
Published 2020-04-15 · Modified
8.8EPSS 0.088
CVE-2020-1594
Microsoft Excel Remote Code Execution Vulnerability
Published 2020-09-11 · Modified
8.8EPSS 0.039
CVE-2020-1332
Microsoft Excel Remote Code Execution Vulnerability
Published 2020-09-11 · Modified
8.8EPSS 0.039
CVE-2020-1335
Microsoft Excel Remote Code Execution Vulnerability
Published 2020-09-11 · Modified
8.8EPSS 0.039
CVE-2022-21840
Microsoft Office Remote Code Execution Vulnerability
Published 2022-01-11 · Modified
8.8EPSS 0.031
CVE-2022-41106
Microsoft Excel Remote Code Execution Vulnerability
Published 2022-11-09 · Modified
8.8EPSS 0.024
CVE-2026-78518
Microsoft Office Excel Remote Code Execution Vulnerability
Published 2026-09-08 · Analyzed
8.8EPSS 0.009
CVE-2026-62870
Microsoft Excel Remote Code Execution Vulnerability
Published 2026-08-03 · Analyzed
8.8EPSS 0.008
CVE-2026-65807
Microsoft Excel Remote Code Execution Vulnerability
Published 2026-08-11 · Analyzed
8.8EPSS 0.008
CVE-2025-21362
Microsoft Excel Remote Code Execution Vulnerability
Published 2025-01-14 · Analyzed
8.4EPSS 0.009
CVE-2025-30377
Microsoft Office Remote Code Execution Vulnerability
Published 2025-05-13 · Analyzed
8.4EPSS 0.006
CVE-2025-32704
Microsoft Excel Remote Code Execution Vulnerability
Published 2025-05-13 · Analyzed
8.4EPSS 0.004
CVE-2026-26109
Microsoft Excel Remote Code Execution Vulnerability
Published 2026-03-10 · Analyzed
8.4EPSS 0.003
CVE-2026-44822
Microsoft Excel Information Disclosure Vulnerability
Published 2026-06-09 · Analyzed
8.2EPSS 0.006
CVE-2016-7262
Microsoft Excel 2007 SP3, Excel 2010 SP2, Excel 2013 SP1, Excel 2013 RT SP1, Excel 2016, Office Compatibility Pack SP3, and Excel Viewer allow user-assisted remote attackers to execute arbitrary commands via a crafted cell that is mishandled upon a click, aka "Microsoft Office Security Feature Bypass Vulnerability."
Published 2016-12-20 · Analyzed
7.8KEVEPSS 0.577
CVE-2023-36041
Microsoft Excel Remote Code Execution Vulnerability
Published 2023-11-14 · Modified
7.8EPSS 0.567
CVE-2023-32029
Microsoft Excel Remote Code Execution Vulnerability
Published 2023-06-13 · Modified
7.8EPSS 0.535
CVE-2023-33133
Microsoft Excel Remote Code Execution Vulnerability
Published 2023-06-13 · Modified
7.8EPSS 0.440
CVE-2021-42292
Microsoft Excel Security Feature Bypass Vulnerability
Published 2021-11-10 · Analyzed
7.8KEVEPSS 0.430
CVE-2016-7266
Microsoft Excel 2007 SP3, Excel 2010 SP2, Excel 2013 SP1, Excel 2013 RT SP1, Excel 2016, Office Compatibility Pack SP3, Excel Viewer, and Excel 2016 for Mac mishandle a registry check, which allows user-assisted remote attackers to execute arbitrary commands via crafted embedded content in a document, aka "Microsoft Office Security Feature Bypass Vulnerability."
Published 2016-12-20 · Modified
7.8EPSS 0.222
CVE-2020-0652
A remote code execution vulnerability exists in Microsoft Office software when the software fails to properly handle objects in memory, aka 'Microsoft Office Memory Corruption Vulnerability'.
Published 2020-01-14 · Modified
7.8EPSS 0.171
← Prev2 / 8Next →