
CVE-2023-36767 – Microsoft Office Security Feature Bypass Vulnerability
https://notcve.org/view.php?id=CVE-2023-36767
12 Sep 2023 — Microsoft Office Security Feature Bypass Vulnerability Vulnerabilidad de Omisión de la Característica de Seguridad de Microsoft Office • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-36767 • CWE-20: Improper Input Validation •

CVE-2022-46869
https://notcve.org/view.php?id=CVE-2022-46869
31 Aug 2023 — Local privilege escalation during installation due to improper soft link handling. The following products are affected: Acronis Cyber Protect Home Office (Windows) before build 40278. Escalada de privilegios locales debido a un manejo inadecuado de enlaces blandos durante la instalación. Los siguientes productos se ven afectados: Acronis Cyber ??Protect Home Office (Windows) anterior a la compilación 40278 • https://security-advisory.acronis.com/advisories/SEC-3835 • CWE-59: Improper Link Resolution Before File Access ('Link Following') CWE-269: Improper Privilege Management CWE-610: Externally Controlled Reference to a Resource in Another Sphere •

CVE-2023-41743
https://notcve.org/view.php?id=CVE-2023-41743
31 Aug 2023 — Local privilege escalation due to insecure driver communication port permissions. The following products are affected: Acronis Cyber Protect Home Office (Windows) before build 40278, Acronis Agent (Windows) before build 31637, Acronis Cyber Protect 15 (Windows) before build 35979. Escalada de privilegios locales debido a permisos inseguros del puerto de comunicación del conductor. Los siguientes productos se ven afectados: Acronis Cyber ??Protect Home Office (Windows) antes de la compilación 40278, Acronis ... • https://security-advisory.acronis.com/SEC-4858 • CWE-269: Improper Privilege Management •

CVE-2022-46868
https://notcve.org/view.php?id=CVE-2022-46868
31 Aug 2023 — Local privilege escalation during recovery due to improper soft link handling. The following products are affected: Acronis Cyber Protect Home Office (Windows) before build 40173. • https://security-advisory.acronis.com/advisories/SEC-2499 • CWE-610: Externally Controlled Reference to a Resource in Another Sphere •

CVE-2023-36897 – Visual Studio Tools for Office Runtime Spoofing Vulnerability
https://notcve.org/view.php?id=CVE-2023-36897
08 Aug 2023 — Visual Studio Tools for Office Runtime Spoofing Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-36897 • CWE-20: Improper Input Validation •

CVE-2023-36896 – Microsoft Excel Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2023-36896
08 Aug 2023 — Microsoft Excel Remote Code Execution Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-36896 • CWE-122: Heap-based Buffer Overflow •

CVE-2023-36895 – Microsoft Outlook Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2023-36895
08 Aug 2023 — Microsoft Outlook Remote Code Execution Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-36895 • CWE-416: Use After Free •

CVE-2023-36893 – Microsoft Outlook Spoofing Vulnerability
https://notcve.org/view.php?id=CVE-2023-36893
08 Aug 2023 — Microsoft Outlook Spoofing Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-36893 • CWE-20: Improper Input Validation •

CVE-2023-35372 – Microsoft Office Visio Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2023-35372
08 Aug 2023 — Microsoft Office Visio Remote Code Execution Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35372 • CWE-190: Integer Overflow or Wraparound •

CVE-2023-35371 – Microsoft Office Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2023-35371
08 Aug 2023 — Microsoft Office Remote Code Execution Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35371 • CWE-415: Double Free •