VendorsMicrosoftpowerpointall versions
Vulnerabilities

Microsoft Powerpoint

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

86CVEs
CVE-2020-0760
A remote code execution vulnerability exists when Microsoft Office improperly loads arbitrary type libraries, aka 'Microsoft Office Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0991.
Published 2020-04-15 · Modified
8.8EPSS 0.088
CVE-2026-69797
Microsoft Office PowerPoint Remote Code Execution Vulnerability
Published 2026-09-08 · Analyzed
8.8EPSS 0.008
CVE-2026-69678
Microsoft Office PowerPoint Remote Code Execution Vulnerability
Published 2026-09-08 · Analyzed
8.8EPSS 0.008
CVE-2026-69767
Microsoft Office PowerPoint Remote Code Execution Vulnerability
Published 2026-09-08 · Analyzed
8.8EPSS 0.008
CVE-2021-27056
Microsoft PowerPoint Remote Code Execution Vulnerability
Published 2021-03-11 · Modified
7.8EPSS 0.040
CVE-2025-47175
Microsoft PowerPoint Remote Code Execution Vulnerability
Published 2025-06-10 · Analyzed
7.81 PoCEPSS 0.024
CVE-2024-20673
Microsoft Office Remote Code Execution Vulnerability
Published 2024-02-13 · Modified
7.8EPSS 0.012
CVE-2024-38171
Microsoft PowerPoint Remote Code Execution Vulnerability
Published 2024-08-13 · Analyzed
7.8EPSS 0.009
CVE-2025-54908
Microsoft PowerPoint Remote Code Execution Vulnerability
Published 2025-09-09 · Analyzed
7.8EPSS 0.006
CVE-2025-53761
Microsoft PowerPoint Remote Code Execution Vulnerability
Published 2025-08-12 · Analyzed
7.8EPSS 0.005
CVE-2026-32200
Microsoft PowerPoint Remote Code Execution Vulnerability
Published 2026-04-14 · Analyzed
7.8EPSS 0.005
CVE-2026-55120
Microsoft PowerPoint Remote Code Execution Vulnerability
Published 2026-07-14 · Analyzed
7.8EPSS 0.005
CVE-2026-55123
Microsoft PowerPoint Remote Code Execution Vulnerability
Published 2026-07-14 · Analyzed
7.8EPSS 0.005
CVE-2026-55043
Microsoft PowerPoint Remote Code Execution Vulnerability
Published 2026-07-14 · Analyzed
7.8EPSS 0.005
CVE-2026-44803
Windows Graphics Component Remote Code Execution Vulnerability
Published 2026-06-09 · Analyzed
7.8EPSS 0.005
CVE-2026-44812
Windows Graphics Component Remote Code Execution Vulnerability
Published 2026-06-09 · Analyzed
7.8EPSS 0.005
CVE-2025-59238
Microsoft PowerPoint Remote Code Execution Vulnerability
Published 2025-10-14 · Analyzed
7.8EPSS 0.004
CVE-2025-49705
Microsoft PowerPoint Remote Code Execution Vulnerability
Published 2025-07-08 · Analyzed
7.8EPSS 0.004
CVE-2006-3660
Unspecified vulnerability in Microsoft PowerPoint 2003 has unknown impact and user-assisted attack vectors related to powerpnt.exe. NOTE: due to the lack of available details as of 20060717, it is unclear how this is related to CVE-2006-3655, CVE-2006-3656, and CVE-2006-3590, although it is possible that they are all different.
Published 2006-07-17 · Modified
7.61 PoCEPSS 0.182
CVE-2006-0022
Unspecified vulnerability in Microsoft PowerPoint in Microsoft Office 2000 SP3, Office XP SP3, Office 2003 SP1 and SP2, Office 2004 for Mac, and v. X for Mac allows user-assisted attackers to execute arbitrary code via a PowerPoint document with a malformed record, which triggers memory corruption.
Published 2006-06-13 · Modified
7.6EPSS 0.145
CVE-2006-3449
Unspecified vulnerability in Microsoft PowerPoint 2000 through 2003, possibly a buffer overflow, allows user-assisted remote attackers to execute arbitrary commands via a malformed record in the BIFF file format used in a PPT file, a different issue than CVE-2006-1540, aka "Microsoft PowerPoint Malformed Record Vulnerability."
Published 2006-08-09 · Modified
7.5EPSS 0.428
CVE-2004-0848
Buffer overflow in Microsoft Office XP allows remote attackers to execute arbitrary code via a link with a URL file location containing long inputs after (1) "%00 (null byte) in .doc filenames or (2) "%0a" (carriage return) in .rtf filenames.
Published 2005-02-08 · Modified
7.5EPSS 0.275
CVE-2000-0419
The Office 2000 UA ActiveX Control is marked as "safe for scripting," which allows remote attackers to conduct unauthorized activities via the "Show Me" function in Office Help, aka the "Office 2000 UA Control" vulnerability.
Published 2000-07-12 · Modified
7.5EPSS 0.214
CVE-2008-3068
Microsoft Crypto API 5.131.2600.2180 through 6.0, as used in Outlook, Windows Live Mail, and Office 2007, performs Certificate Revocation List (CRL) checks by using an arbitrary URL from a certificate embedded in a (1) S/MIME e-mail message or (2) signed document, which allows remote attackers to obtain reading times and IP addresses of recipients, and port-scan results, via a crafted certificate with an Authority Information Access (AIA) extension.
Published 2008-07-07 · Modified
7.5EPSS 0.174
CVE-2002-0152
Buffer overflow in various Microsoft applications for Macintosh allows remote attackers to cause a denial of service (crash) or execute arbitrary code by invoking the file:// directive with a large number of / characters, which affects Internet Explorer 5.1, Outlook Express 5.0 through 5.0.2, Entourage v. X and 2001, PowerPoint v. X, 2001, and 98, and Excel v. X and 2001 for Macintosh.
Published 2002-06-25 · Modified
7.5EPSS 0.174
CVE-2000-0597
Microsoft Office 2000 (Excel and PowerPoint) and PowerPoint 97 are marked as safe for scripting, which allows remote attackers to force Internet Explorer or some email clients to save files to arbitrary locations via the Visual Basic for Applications (VBA) SaveAs function, aka the "Office HTML Script" vulnerability.
Published 2000-10-13 · Modified
7.5EPSS 0.121
CVE-2001-0718
Vulnerability in (1) Microsoft Excel 2002 and earlier and (2) Microsoft PowerPoint 2002 and earlier allows attackers to bypass macro restrictions and execute arbitrary commands by modifying the data stream in the document.
Published 2002-03-09 · Modified
7.5EPSS 0.111
CVE-1999-1474
PowerPoint 95 and 97 allows remote attackers to cause an application to be run automatically without prompting the user, possibly through the slide show, when the document is opened in browsers such as Internet Explorer.
Published 2001-09-12 · Modified
7.5EPSS 0.093
CVE-2000-0088
Buffer overflow in the conversion utilities for Japanese, Korean and Chinese Word 5 documents allows an attacker to execute commands, aka the "Malformed Conversion Data" vulnerability.
Published 2000-03-22 · Modified
7.2EPSS 0.019
CVE-2026-26133
M365 Copilot Information Disclosure Vulnerability
Published 2026-03-13 · Modified
7.1EPSS 0.005
CVE-2026-45649
Office for Android Spoofing Vulnerability
Published 2026-06-09 · Analyzed
7.1EPSS 0.004
CVE-2026-41102
Microsoft PowerPoint for Android Spoofing Vulnerability
Published 2026-05-12 · Analyzed
7.1EPSS 0.003
CVE-2025-49699
Microsoft Office Remote Code Execution Vulnerability
Published 2025-07-08 · Analyzed
7.0EPSS 0.003
CVE-2026-72977
Microsoft Office PowerPoint Information Disclosure Vulnerability
Published 2026-09-08 · Analyzed
6.5EPSS 0.010
CVE-2026-72975
Microsoft Office PowerPoint Information Disclosure Vulnerability
Published 2026-09-08 · Analyzed
6.5EPSS 0.009
CVE-2001-0005
Buffer overflow in the parsing mechanism of the file loader in Microsoft PowerPoint 2000 allows attackers to execute arbitrary commands.
Published 2001-05-07 · Modified
6.2EPSS 0.015
CVE-2016-3279
Microsoft Office 2010 SP2, Excel 2010 SP2, PowerPoint 2010 SP2, Word 2010 SP2, Excel 2013 SP1, PowerPoint 2013 SP1, Word 2013 SP1, Excel 2013 RT SP1, PowerPoint 2013 RT SP1, Word 2013 RT SP1, Excel 2016, Word 2016, Word Automation Services on SharePoint Server 2010 SP2, and Office Web Apps 2010 SP2 allow remote attackers to execute arbitrary code via a crafted XLA file, aka "Microsoft Office Remote Code Execution Vulnerability."
Published 2016-07-13 · Modified
5.5EPSS 0.164
CVE-2026-78513
Microsoft Office PowerPoint Information Disclosure Vulnerability
Published 2026-09-08 · Analyzed
5.5EPSS 0.005
CVE-2026-68809
Powerpoint Information Disclosure Vulnerability
Published 2026-08-11 · Analyzed
5.5EPSS 0.004
CVE-2006-3655
Unspecified vulnerability in mso.dll in Microsoft PowerPoint 2003 allows user-assisted attackers to execute arbitrary code via a crafted PowerPoint file. NOTE: due to the lack of available details as of 20060717, it is unclear how this is related to CVE-2006-3656, CVE-2006-3660, and CVE-2006-3590, although it is possible that they are all different.
Published 2006-07-17 · Modified
5.11 PoCEPSS 0.209
← Prev2 / 3Next →