VendorsMicrosoftofficeall versions
Vulnerabilities

Microsoft Office

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1034CVEs
CVE-2022-24511
Microsoft Office Word Tampering Vulnerability
Published 2022-03-09 · Modified
5.5EPSS 0.011
CVE-2020-17126
Microsoft Excel Information Disclosure Vulnerability
Published 2020-12-09 · Modified
5.5EPSS 0.011
CVE-2023-41764
Microsoft Office Spoofing Vulnerability
Published 2023-09-12 · Modified
5.5EPSS 0.010
CVE-2022-41103
Microsoft Word Information Disclosure Vulnerability
Published 2022-11-09 · Modified
5.5EPSS 0.009
CVE-2022-23252
Microsoft Office Information Disclosure Vulnerability
Published 2022-02-09 · Modified
5.5EPSS 0.008
CVE-2022-41060
Microsoft Word Information Disclosure Vulnerability
Published 2022-11-09 · Modified
5.5EPSS 0.008
CVE-2022-41104
Microsoft Excel Security Feature Bypass Vulnerability
Published 2022-11-09 · Modified
5.5EPSS 0.008
CVE-2022-41105
Microsoft Excel Information Disclosure Vulnerability
Published 2022-11-09 · Modified
5.5EPSS 0.008
CVE-2023-33162
Microsoft Excel Information Disclosure Vulnerability
Published 2023-07-11 · Modified
5.5EPSS 0.008
CVE-2021-40472
Microsoft Excel Information Disclosure Vulnerability
Published 2021-10-13 · Modified
5.5EPSS 0.007
CVE-2025-54901
Microsoft Excel Information Disclosure Vulnerability
Published 2025-09-09 · Analyzed
5.5EPSS 0.006
CVE-2026-21258
Microsoft Excel Information Disclosure Vulnerability
Published 2026-02-10 · Analyzed
5.5EPSS 0.006
CVE-2026-21261
Microsoft Excel Information Disclosure Vulnerability
Published 2026-02-10 · Analyzed
5.5EPSS 0.006
CVE-2025-59240
Microsoft Excel Information Disclosure Vulnerability
Published 2025-11-11 · Analyzed
5.5EPSS 0.006
CVE-2026-35440
Microsoft Word Information Disclosure Vulnerability
Published 2026-05-12 · Analyzed
5.5EPSS 0.005
CVE-2025-48812
Microsoft Excel Information Disclosure Vulnerability
Published 2025-07-08 · Analyzed
5.5EPSS 0.005
CVE-2021-40454
Rich Text Edit Control Information Disclosure Vulnerability
Published 2021-10-13 · Modified
5.5EPSS 0.005
CVE-2017-8550
A remote code execution vulnerability exists in Skype for Business when the software fails to sanitize specially crafted content, aka "Skype for Business Remote Code Execution Vulnerability".
Published 2017-06-15 · Modified
5.41 PoCEPSS 0.224
CVE-2017-8695
Windows Uniscribe in Microsoft Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; Windows 10 Gold, 1511, 1607, 1703, and Server 2016; Office 2007 SP3; Office 2010 SP2; Word Viewer; Office for Mac 2011 and 2016; Skype for Business 2016; Lync 2013 SP1; Lync 2010; Lync 2010 Attendee; and Live Meeting 2007 Add-in and Console allows an attacker to obtain information to further compromise a user's system via a specially crafted document or an untrusted webpage, aka "Graphics Component Information Disclosure Vulnerability."
Published 2017-09-13 · Modified
5.3EPSS 0.096
CVE-2018-1007
An information disclosure vulnerability exists when Microsoft Office improperly discloses the contents of its memory, aka "Microsoft Office Information Disclosure Vulnerability." This affects Microsoft Office. This CVE ID is unique from CVE-2018-0950.
Published 2018-04-12 · Modified
5.3EPSS 0.065
CVE-2006-3493
Buffer overflow in LsCreateLine function (mso_203) in mso.dll and mso9.dll, as used by Microsoft Word and possibly other products in Microsoft Office 2003, 2002, and 2000, allows remote user-assisted attackers to cause a denial of service (crash) via a crafted Word DOC or other Office file type. NOTE: this issue was originally reported to allow code execution, but on 20060710 Microsoft stated that code execution is not possible, and the original researcher agrees.
Published 2006-07-10 · Modified
5.11 PoCEPSS 0.404
CVE-2006-0030
Unspecified vulnerability in Microsoft Excel 2000, 2002, and 2003, in Microsoft Office 2000 SP3 and other packages, allows user-assisted attackers to execute arbitrary code via an Excel file with a malformed graphic, which leads to memory corruption.
Published 2006-03-14 · Modified
5.11 PoCEPSS 0.396
CVE-2006-3868
Unspecified vulnerability in Microsoft Office XP and 2003 allows remote user-assisted attackers to execute arbitrary code via a malformed Smart Tag.
Published 2006-10-10 · Modified
5.1EPSS 0.248
CVE-2006-0031
Stack-based buffer overflow in Microsoft Excel 2000, 2002, and 2003, in Microsoft Office 2000 SP3 and other packages, allows user-assisted attackers to execute arbitrary code via an Excel file with a malformed record with a modified length value, which leads to memory corruption.
Published 2006-03-14 · Modified
5.1EPSS 0.183
CVE-2006-0028
Unspecified vulnerability in Microsoft Excel 2000, 2002, and 2003, in Microsoft Office 2000 SP3 and other packages, allows user-assisted attackers to execute arbitrary code via a BIFF parsing format file containing malformed BOOLERR records that lead to memory corruption, probably involving invalid pointers.
Published 2006-03-14 · Modified
5.1EPSS 0.162
CVE-2006-0029
Unspecified vulnerability in Microsoft Excel 2000, 2002, and 2003, in Microsoft Office 2000 SP3 and other packages, allows user-assisted attackers to execute arbitrary code via an Excel file with a malformed description, which leads to memory corruption.
Published 2006-03-14 · Modified
5.1EPSS 0.146
CVE-2006-0009
Buffer overflow in Microsoft Office 2000 SP3, XP SP3, and other versions and packages, allows user-assisted attackers to execute arbitrary code via a routing slip that is longer than specified by the provided length field, as exploited by malware such as TROJ_MDROPPER.BH and Trojan.PPDropper.E in attacks against PowerPoint.
Published 2006-03-14 · Modified
5.1EPSS 0.142
CVE-2006-2387
Unspecified vulnerability in Microsoft Excel 2000, 2002, 2003, 2004 for Mac, v.X for Mac, Excel Viewer 2003, and Microsoft Works Suite 2004 through 2006 allows user-assisted attackers to execute arbitrary code via a crafted DATETIME record in an XLS file, a different vulnerability than CVE-2006-3867 and CVE-2006-3875.
Published 2006-10-10 · Modified
5.1EPSS 0.125
CVE-2002-0617
The Macro Security Model in Microsoft Excel 2000 and 2002 for Windows allows remote attackers to execute code by creating a hyperlink on a drawing shape in a source workbook that points to a destination workbook containing an autoexecute macro, aka "Hyperlinked Excel Workbook Macro Bypass."
Published 2003-04-02 · Modified
5.1EPSS 0.108
CVE-2002-0616
The Macro Security Model in Microsoft Excel 2000 and 2002 for Windows allows remote attackers to execute code by attaching an inline macro to an object within an Excel workbook, aka the "Excel Inline Macros Vulnerability."
Published 2003-04-02 · Modified
5.1EPSS 0.097
CVE-2006-0004
Microsoft PowerPoint 2000 in Office 2000 SP3 has an interaction with Internet Explorer that allows remote attackers to obtain sensitive information via a PowerPoint presentation that attempts to access objects in the Temporary Internet Files Folder (TIFF).
Published 2006-02-14 · Modified
5.0EPSS 0.315
CVE-2007-2903
Buffer overflow in the HelpPopup method in the Microsoft Office 2000 Controllo UA di Microsoft Office ActiveX control (OUACTRL.OCX) 1.0.1.9 allows remote attackers to cause a denial of service (probably winhlp32.exe crash) via a long first argument. NOTE: it is not clear whether this issue crosses privilege boundaries.
Published 2007-05-30 · Modified
5.01 PoCEPSS 0.285
CVE-2013-3160
Microsoft Office 2003 SP3 and 2007 SP3, Word 2003 SP3 and 2007 SP3, and Word Viewer allow remote attackers to read arbitrary files via an XML document containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue, aka "XML External Entities Resolution Vulnerability."
Published 2013-09-11 · Modified
5.0EPSS 0.233
CVE-2013-0095
Outlook in Microsoft Office for Mac 2008 before 12.3.6 and Office for Mac 2011 before 14.3.2 allows remote attackers to trigger access to a remote URL and consequently confirm the rendering of an HTML e-mail message by including unspecified HTML5 elements and leveraging the installation of a WebKit browser on the victim's machine, aka "Unintended Content Loading Vulnerability."
Published 2013-03-13 · Modified
5.0EPSS 0.208
CVE-2002-1716
The Host() function in the Microsoft spreadsheet component on Microsoft Office XP allows remote attackers to create arbitrary files using the SaveAs capability.
Published 2005-06-21 · Modified
5.0EPSS 0.143
CVE-2002-0021
Network Product Identification (PID) Checker in Microsoft Office v. X for Mac allows remote attackers to cause a denial of service (crash) via a malformed product announcement.
Published 2002-06-25 · Modified
5.0EPSS 0.142
CVE-2014-2730
The XML parser in Microsoft Office 2007 SP3, 2010 SP1 and SP2, and 2013, and Office for Mac 2011, does not properly detect recursion during entity expansion, which allows remote attackers to cause a denial of service (memory consumption and persistent application hang) via a crafted XML document containing a large number of nested entity references, as demonstrated by a crafted text/plain e-mail message to Outlook, a similar issue to CVE-2003-1564.
Published 2014-04-05 · Modified
5.0EPSS 0.115
CVE-2001-0003
Web Extender Client (WEC) in Microsoft Office 2000, Windows 2000, and Windows Me does not properly process Internet Explorer security settings for NTLM authentication, which allows attackers to obtain NTLM credentials and possibly obtain the password, aka the "Web Client NTLM Authentication" vulnerability.
Published 2001-05-07 · Modified
5.0EPSS 0.074
CVE-2017-0287
Graphics in Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows improper disclosure of memory contents, aka "Graphics Uniscribe Information Disclosure Vulnerability". This CVE ID is unique from CVE-2017-0286, CVE-2017-0288, CVE-2017-0289, CVE-2017-8531, CVE-2017-8532, and CVE-2017-8533.
Published 2017-06-15 · Modified
5.01 PoCEPSS 0.031
CVE-2017-0289
Graphics in Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows improper disclosure of memory contents, aka "Windows Graphics Information Disclosure Vulnerability". This CVE ID is unique from CVE-2017-0286, CVE-2017-0287, CVE-2017-0288, CVE-2017-8531, CVE-2017-8532, and CVE-2017-8533.
Published 2017-06-15 · Modified
5.01 PoCEPSS 0.031
← Prev25 / 26Next →