Page 2 of 50 results (0.464 seconds)

CVSS: 8.8EPSS: 16%CPEs: 9EXPL: 1

Microsoft Outlook Remote Code Execution Vulnerability Microsoft Outlook suffers from a remote code execution via a maliciously crafted word file. • https://www.exploit-db.com/exploits/51574 http://packetstormsecurity.com/files/173361/Microsoft-365-MSO-2306-Build-16.0.16529.20100-Remote-Code-Execution.html https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-33131 •

CVSS: 9.3EPSS: 16%CPEs: 3EXPL: 2

<p>A remote code execution vulnerability exists in Microsoft Outlook software when the software fails to properly handle objects in memory. ... </p> <p>Exploitation of the vulnerability requires that a user open a specially crafted file with an affected version of Microsoft Outlook software. ... </p> <p>The security update addresses the vulnerability by correcting how Outlook handles objects in memory.</p> Se presenta una vulnerabilidad de ejecución de código remota en el software Microsoft Outlook cuando el software presenta un fallo al manejar apropiadamente objetos en memoria, también se conoce como "Microsoft Outlook Remote Code Execution Vulnerability" This vulnerability allows remote attackers to disclose sensitive information on affected installations of Microsoft Outlook. • https://github.com/0neb1n/CVE-2020-16947 https://github.com/MasterSploit/CVE-2020-16947 http://packetstormsecurity.com/files/169961/Microsoft-Outlook-2019-16.0.13231.20262-Remote-Code-Execution.html https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-16947 https://www.zerodayinitiative.com/advisories/ZDI-20-1249 https://www.zerodayinitiative.com/advisories/ZDI-20-1250 • CWE-125: Out-of-bounds Read CWE-787: Out-of-bounds Write •

CVSS: 9.3EPSS: 0%CPEs: 6EXPL: 0

A remote code execution vulnerability exists in Microsoft Outlook when the software fails to properly handle objects in memory. ... Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. Exploitation of the vulnerability requires that a user open a specially crafted file with an affected version of Microsoft Outlook software. ... Instead, an attacker would have to convince users to click a link, typically by way of an enticement in an email or instant message, and then convince them to open the specially crafted file. Note that where severity is indicated as Critical in the Affected Products table, the Preview Pane is an attack vector. The security update addresses the vulnerability by correcting how Outlook handles objects in memory. Se presenta una vulnerabilidad de ejecución de código remota en Microsoft Outlook cuando el software presenta un fallo al manejar apropiadamente objetos en memoria, también se conoce como "Microsoft Outlook Memory Corruption Vulnerability". • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1483 • CWE-787: Out-of-bounds Write •

CVSS: 8.8EPSS: 4%CPEs: 33EXPL: 0

A remote code execution vulnerability exists when Microsoft Office improperly loads arbitrary type libraries, aka 'Microsoft Office Remote Code Execution Vulnerability'. ... Hay una vulnerabilidad de ejecución de código remota cuando Microsoft Office carga inapropiadamente bibliotecas de tipos arbitrarios, también se conoce como "Microsoft Office Remote Code Execution Vulnerability". • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-0760 •

CVSS: 9.3EPSS: 1%CPEs: 6EXPL: 0

A remote code execution vulnerability exists in Microsoft Outlook software when it fails to properly handle objects in memory. ... For example, the file could then take actions on behalf of the logged-on user with the same permissions as the current user. To exploit the vulnerability, a user must open a specially crafted file with an affected version of Microsoft Outlook software. ... Instead, an attacker would have to convince the user to click a link, typically by way of an enticement in an email or Instant Messenger message, and then convince the user to open the specially crafted file. Note that the Preview Pane is not an attack vector for this vulnerability. The security update addresses the vulnerability by correcting how Microsoft Outlook handles files in memory. Existe una vulnerabilidad de ejecución de código remota en el programa Microsoft Outlook cuando no puede manejar apropiadamente los objetos en la memoria, también se conoce como "Microsoft Outlook Remote Code Execution Vulnerability". • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-1200 •