Skip to main content

Vendor/product archive

microsoft / office CVEs

Beta · best-effort

1,033 CVEs tagged to microsoft / office282 Critical, 577 High, 166 Medium, 8 Low, 0 Unrated.

CVE-2015-2456

Published Aug 15, 2015

Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, Windows 10, Offic…

CVSS 9.3 · Critical

CVE-2015-2455

Published Aug 15, 2015

Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, Windows 10, Offic…

CVSS 9.3 · Critical

CVE-2015-2435

Published Aug 15, 2015

Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, Windows 10, Offic…

CVSS 9.3 · Critical

CVE-2015-2423

Published Aug 15, 2015

Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, Windows 10, Excel…

CVSS 4.3 · Medium

CVE-2015-1642

Published Aug 15, 2015

Microsoft Office 2007 SP3, 2010 SP2, and 2013 SP1 allows remote attackers to execute arbitrary code via a crafted document, aka "Microsoft Office Memory Corruption Vulnerability."

CVSS 7.8 · High
evidence mentions
3
Buzz score
46.9
KEV listed
Vendor/product tagsBeta · best-effort

CVE-2015-2380

Published Jul 14, 2015

Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word 2013 SP1, and Word 2013 RT SP1 allow remote attackers to execute arbitrary code or cause a denial of service (memory…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2015-1770

Published Jun 10, 2015

Microsoft Office 2013 SP1 and 2013 RT SP1 allows remote attackers to execute arbitrary code via a crafted Office document, aka "Microsoft Office Uninitialized Memory Use Vulnerabi…

CVSS 8.8 · High
evidence mentions
4
Buzz score
54.1
KEV listed
Vendor/product tagsBeta · best-effort

CVE-2015-1683

Published May 13, 2015

Microsoft Office 2007 SP3 allows remote attackers to execute arbitrary code via a crafted document, aka "Microsoft Office Memory Corruption Vulnerability."

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2015-1682

Published May 13, 2015

Microsoft Office 2010 SP2, Excel 2010 SP2, PowerPoint 2010 SP2, Word 2010 SP2, Office 2013 SP1, Excel 2013 SP1, PowerPoint 2013 SP1, Word 2013 SP1, Office 2013 RT SP1, Excel 2013…

CVSS 9.3 · Critical

CVE-2015-1639

Published Apr 14, 2015

Cross-site scripting (XSS) vulnerability in Microsoft Office for Mac 2011 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka "Microsoft Ou…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2015-0085

Published Mar 11, 2015

Use-after-free vulnerability in Microsoft Office 2007 SP3, Excel 2007 SP3, PowerPoint 2007 SP3, Word 2007 SP3, Office 2010 SP2, Excel 2010 SP2, PowerPoint 2010 SP2, Word 2010 SP2,…

CVSS 9.3 · Critical

CVE-2014-6362

Published Feb 11, 2015

Use-after-free vulnerability in Microsoft Office 2007 SP3, 2010 SP2, and 2013 Gold and SP1 allows remote attackers to bypass the ASLR protection mechanism via a crafted document,…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-6364

Published Dec 11, 2014

Use-after-free vulnerability in Microsoft Office 2007 SP3; 2010 SP2; 2013 Gold, SP1, and SP2; and 2013 RT Gold and SP1 allows remote attackers to execute arbitrary code via a craf…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort
Showing 701-725 of 1,033 CVEsPage 29 of 42