Skip to main content

Vendor/product archive

microsoft / office CVEs

Beta · best-effort

1,033 CVEs tagged to microsoft / office282 Critical, 577 High, 166 Medium, 8 Low, 0 Unrated.

CVE-2012-1887

Published Nov 14, 2012

Use-after-free vulnerability in Microsoft Excel 2003 SP3, 2007 SP2 and SP3, and 2010 SP1, and Office 2008 and 2011 for Mac, allows remote attackers to execute arbitrary code via a…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2012-2524

Published Aug 15, 2012

Microsoft Office 2007 SP2 and SP3 and 2010 SP1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted Computer Graphics M…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2012-1894

Published Jul 10, 2012

Microsoft Office for Mac 2011 uses world-writable permissions for the "Applications/Microsoft Office 2011/" directory and certain other directories, which allows local users to ga…

CVSS 6.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-1889

Published Jun 13, 2012

Microsoft XML Core Services 3.0, 4.0, 5.0, and 6.0 accesses uninitialized memory locations, which allows remote attackers to execute arbitrary code or cause a denial of service (m…

CVSS 8.8 · High
evidence mentions
24
Buzz score
69.5
KEV listed

CVE-2012-0167

Published May 9, 2012

Heap-based buffer overflow in the Office GDI+ library in Microsoft Office 2003 SP3 and 2007 SP2 and SP3 allows remote attackers to execute arbitrary code via a crafted EMF image i…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2012-0143

Published May 9, 2012

Microsoft Excel 2003 SP3 and Office 2008 for Mac do not properly handle memory during the opening of files, which allows remote attackers to execute arbitrary code via a crafted s…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2012-0158

Published Apr 10, 2012

The (1) ListView, (2) ListView2, (3) TreeView, and (4) TreeView2 ActiveX controls in MSCOMCTL.OCX in the Common Controls in Microsoft Office 2003 SP3, 2007 SP2 and SP3, and 2010 G…

CVSS 8.8 · High
evidence mentions
132
Buzz score
72.5
KEV listed

CVE-2011-3403

Published Dec 14, 2011

Microsoft Excel 2003 SP3 and Office 2004 for Mac do not properly handle objects in memory, which allows remote attackers to execute arbitrary code via a crafted Excel spreadsheet,…

CVSS 9.3 · Critical
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2011-1983

Published Dec 14, 2011

Use-after-free vulnerability in Microsoft Office 2007 SP2 and SP3, Office 2010 Gold and SP1, and Office for Mac 2011 allows remote attackers to execute arbitrary code via a crafte…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort
Showing 751-775 of 1,033 CVEsPage 31 of 42