VendorsMicrosoftwordall versions
Vulnerabilities

Microsoft Word

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

320CVEs
CVE-2000-0088
Buffer overflow in the conversion utilities for Japanese, Korean and Chinese Word 5 documents allows an attacker to execute commands, aka the "Malformed Conversion Data" vulnerability.
Published 2000-03-22 · Modified
7.2EPSS 0.019
CVE-2008-2752
Microsoft Word 2000 9.0.2812 and 2003 11.8106.8172 does not properly handle unordered lists, which allows user-assisted remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via a crafted .doc file. NOTE: some of these details are obtained from third party information.
Published 2008-06-18 · Modified
7.11 PoCEPSS 0.278
CVE-2016-7290
Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Office Compatibility Pack SP3, Word for Mac 2011, Word Automation Services on SharePoint Server 2010 SP2, and Office Web Apps 2010 SP2 allow remote attackers to obtain sensitive information from process memory or cause a denial of service (out-of-bounds read) via a crafted document, aka "Microsoft Office Information Disclosure Vulnerability," a different vulnerability than CVE-2016-7291.
Published 2016-12-20 · Modified
7.1EPSS 0.228
CVE-2016-7291
Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Office Compatibility Pack SP3, Word for Mac 2011, Word Automation Services on SharePoint Server 2010 SP2, and Office Web Apps 2010 SP2 allow remote attackers to obtain sensitive information from process memory or cause a denial of service (out-of-bounds read) via a crafted document, aka "Microsoft Office Information Disclosure Vulnerability," a different vulnerability than CVE-2016-7290.
Published 2016-12-20 · Modified
7.1EPSS 0.228
CVE-2016-7268
Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Office Compatibility Pack SP3, Word Viewer, Word for Mac 2011, Word Automation Services on SharePoint Server 2010 SP2, and Office Web Apps 2010 SP2 allow remote attackers to obtain sensitive information from process memory or cause a denial of service (out-of-bounds read) via a crafted document, aka "Microsoft Office Information Disclosure Vulnerability."
Published 2016-12-20 · Modified
7.1EPSS 0.226
CVE-2013-6801
Microsoft Word 2003 SP2 and SP3 on Windows XP SP3 allows remote attackers to cause a denial of service (CPU consumption) via a malformed .doc file containing an embedded image, as demonstrated by word2003forkbomb.doc, related to a "fork bomb" issue.
Published 2013-11-16 · Modified
7.1EPSS 0.144
CVE-2007-1911
Multiple unspecified vulnerabilities in Microsoft Word 2007 allow remote attackers to cause a denial of service (CPU consumption) via crafted documents, as demonstrated by (1) file798-1.doc and (2) file613-1.doc, possibly related to a buffer overflow.
Published 2007-04-10 · Modified
7.11 PoCEPSS 0.119
CVE-2019-1461
A denial of service vulnerability exists in Microsoft Word software when the software fails to properly handle objects in memory, aka 'Microsoft Word Denial of Service Vulnerability'.
Published 2019-12-10 · Modified
7.1EPSS 0.046
CVE-2025-54905
Microsoft Word Information Disclosure Vulnerability
Published 2025-09-09 · Analyzed
7.1EPSS 0.006
CVE-2026-26133
M365 Copilot Information Disclosure Vulnerability
Published 2026-03-13 · Modified
7.1EPSS 0.005
CVE-2026-45649
Office for Android Spoofing Vulnerability
Published 2026-06-09 · Analyzed
7.1EPSS 0.004
CVE-2026-41101
Microsoft Word for Android Spoofing Vulnerability
Published 2026-05-12 · Analyzed
7.1EPSS 0.003
CVE-2025-24078
Microsoft Word Remote Code Execution Vulnerability
Published 2025-03-11 · Analyzed
7.0EPSS 0.006
CVE-2025-62555
Microsoft Word Remote Code Execution Vulnerability
Published 2025-12-09 · Analyzed
7.0EPSS 0.005
CVE-2025-59221
Microsoft Word Remote Code Execution Vulnerability
Published 2025-10-14 · Analyzed
7.0EPSS 0.004
CVE-2025-49699
Microsoft Office Remote Code Execution Vulnerability
Published 2025-07-08 · Analyzed
7.0EPSS 0.003
CVE-2007-1202
Word (or Word Viewer) in Microsoft Office 2000 SP3, XP SP3, 2003 SP2, 2004 for Mac, and Works Suite 2004, 2005, and 2006 does not properly parse certain rich text "property strings of certain control words," which allows user-assisted remote attackers to trigger heap corruption and execute arbitrary code, aka the "Word RTF Parsing Vulnerability."
Published 2007-05-08 · Modified
6.8EPSS 0.295
CVE-2007-1910
Buffer overflow in wwlib.dll in Microsoft Word 2007 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted document, as demonstrated by file789-1.doc.
Published 2007-04-10 · Modified
6.81 PoCEPSS 0.249
CVE-2025-53736
Microsoft Word Information Disclosure Vulnerability
Published 2025-08-12 · Analyzed
6.8EPSS 0.005
CVE-2016-7233
Microsoft Word 2007, Office 2010 SP2, Word 2010 SP2, Word for Mac 2011, Excel for Mac 2011, Word Viewer, Office Compatibility Pack SP3, Word Automation Services on SharePoint Server 2013 SP1, and Office Web Apps 2010 SP2 allow remote attackers to obtain sensitive information from process memory or cause a denial of service (out-of-bounds read) via a crafted Office document, aka "Microsoft Office Information Disclosure Vulnerability."
Published 2016-11-10 · Modified
6.5EPSS 0.224
CVE-2023-36761
Microsoft Word Information Disclosure Vulnerability
Published 2023-09-12 · Analyzed
6.5KEVEPSS 0.196
CVE-2018-0950
An information disclosure vulnerability exists when Office renders Rich Text Format (RTF) email messages containing OLE objects when a message is opened or previewed, aka "Microsoft Office Information Disclosure Vulnerability." This affects Microsoft Word, Microsoft Office. This CVE ID is unique from CVE-2018-1007.
Published 2018-04-12 · Modified
6.5EPSS 0.089
CVE-2026-78522
Microsoft Office Word Information Disclosure Vulnerability
Published 2026-09-08 · Analyzed
6.5EPSS 0.009
CVE-2026-78520
Microsoft Office Outlook Information Disclosure Vulnerability
Published 2026-09-08 · Analyzed
6.5EPSS 0.009
CVE-2026-78503
Microsoft Office Word Information Disclosure Vulnerability
Published 2026-09-08 · Analyzed
6.5EPSS 0.009
CVE-2026-77911
Microsoft Office Word Information Disclosure Vulnerability
Published 2026-09-08 · Analyzed
6.5EPSS 0.009
CVE-2026-69734
Microsoft Office Word Information Disclosure Vulnerability
Published 2026-09-08 · Analyzed
6.5EPSS 0.009
CVE-2026-69719
Microsoft Office Word Information Disclosure Vulnerability
Published 2026-09-08 · Analyzed
6.5EPSS 0.009
CVE-2026-80090
Microsoft Office Word Information Disclosure Vulnerability
Published 2026-09-08 · Analyzed
6.5EPSS 0.009
CVE-2026-80079
Microsoft Office Word Information Disclosure Vulnerability
Published 2026-09-08 · Analyzed
6.5EPSS 0.009
CVE-2026-78502
Microsoft Office Word Information Disclosure Vulnerability
Published 2026-09-08 · Analyzed
6.5EPSS 0.009
CVE-2017-0105
Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word for Mac 2011, Office Compatibility Pack SP3, Word Automation Services on SharePoint Server 2010 SP2, and Office Web Apps 2010 SP2 allow remote attackers to obtain sensitive information from out-of-bound memory via a crafted Office document, aka "Microsoft Office Information Disclosure Vulnerability."
Published 2017-03-17 · Modified
5.5EPSS 0.304
CVE-2016-3234
Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Office Compatibility Pack SP3, Word Viewer, Word Automation Services on SharePoint Server 2010 SP2, Word Automation Services on SharePoint Server 2013 SP1, Office Web Apps 2010 SP2, and Office Web Apps Server 2013 SP1 allow remote attackers to obtain sensitive information from process memory via a crafted Office document, aka "Microsoft Office Information Disclosure Vulnerability."
Published 2016-06-16 · Modified
5.5EPSS 0.241
CVE-2016-3279
Microsoft Office 2010 SP2, Excel 2010 SP2, PowerPoint 2010 SP2, Word 2010 SP2, Excel 2013 SP1, PowerPoint 2013 SP1, Word 2013 SP1, Excel 2013 RT SP1, PowerPoint 2013 RT SP1, Word 2013 RT SP1, Excel 2016, Word 2016, Word Automation Services on SharePoint Server 2010 SP2, and Office Web Apps 2010 SP2 allow remote attackers to execute arbitrary code via a crafted XLA file, aka "Microsoft Office Remote Code Execution Vulnerability."
Published 2016-07-13 · Modified
5.5EPSS 0.164
CVE-2021-31178
Microsoft Office Information Disclosure Vulnerability
Published 2021-05-11 · Modified
5.5EPSS 0.160
CVE-2017-0029
Microsoft Office 2010 SP2, Word 2010 SP2, Word 2013 RT SP1, and Word 2016 allow remote attackers to cause a denial of service (application hang) via a crafted Office document, aka "Microsoft Office Denial of Service Vulnerability."
Published 2017-03-17 · Modified
5.5EPSS 0.156
CVE-2019-0561
An information disclosure vulnerability exists when Microsoft Word macro buttons are used improperly, aka "Microsoft Word Information Disclosure Vulnerability." This affects Microsoft Word, Office 365 ProPlus, Microsoft Office, Word.
Published 2019-01-08 · Modified
5.5EPSS 0.079
CVE-2020-1342
An information disclosure vulnerability exists when Microsoft Office software reads out of bound memory due to an uninitialized variable, which could disclose the contents of memory, aka 'Microsoft Office Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-1445.
Published 2020-07-14 · Modified
5.5EPSS 0.064
CVE-2020-1445
An information disclosure vulnerability exists when Microsoft Office improperly discloses the contents of its memory, aka 'Microsoft Office Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-1342.
Published 2020-07-14 · Modified
5.5EPSS 0.061
CVE-2020-1503
Microsoft Word Information Disclosure Vulnerability
Published 2020-08-17 · Modified
5.5EPSS 0.046
← Prev7 / 8Next →