87 results (0.004 seconds)

CVSS: 7.8EPSS: 0%CPEs: 4EXPL: 0

13 May 2025 — Out-of-bounds read in Microsoft Office Outlook allows an unauthorized attacker to execute code locally. • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-32705 • CWE-125: Out-of-bounds Read •

CVSS: 7.8EPSS: 0%CPEs: 4EXPL: 0

13 May 2025 — Use after free in Microsoft Office PowerPoint allows an unauthorized attacker to execute code locally. • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-29978 • CWE-416: Use After Free •

CVSS: 7.8EPSS: 0%CPEs: 4EXPL: 0

08 Oct 2024 — Microsoft Office Remote Code Execution Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-43616 • CWE-426: Untrusted Search Path •

CVSS: 7.8EPSS: 1%CPEs: 4EXPL: 0

08 Oct 2024 — Microsoft Office Remote Code Execution Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-43576 • CWE-426: Untrusted Search Path •

CVSS: 7.8EPSS: 0%CPEs: 4EXPL: 0

08 Oct 2024 — Microsoft Office Visio Remote Code Execution Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-43505 • CWE-357: Insufficient UI Warning of Dangerous Operations •

CVSS: 7.8EPSS: 0%CPEs: 4EXPL: 0

13 Aug 2024 — Microsoft Office Visio Remote Code Execution Vulnerability This vulnerability allows remote attackers to execute arbitrary code on affected installations of Microsoft Office Visio. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of VSDX files. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated object.... • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-38169 • CWE-122: Heap-based Buffer Overflow •

CVSS: 10.0EPSS: 13%CPEs: 4EXPL: 0

09 Jul 2024 — Microsoft Outlook Remote Code Execution Vulnerability Vulnerabilidad de ejecución remota de código de Microsoft Office • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-38021 • CWE-20: Improper Input Validation •

CVSS: 7.8EPSS: 0%CPEs: 5EXPL: 0

09 Jul 2024 — Microsoft Outlook Spoofing Vulnerability Vulnerabilidad de suplantación de Microsoft Outlook • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-38020 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •

CVSS: 7.8EPSS: 0%CPEs: 2EXPL: 0

13 Feb 2024 — Microsoft Office OneNote Remote Code Execution Vulnerability Vulnerabilidad de ejecución remota de código de Microsoft Office OneNote • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-21384 • CWE-416: Use After Free •

CVSS: 9.0EPSS: 15%CPEs: 4EXPL: 1

13 Feb 2024 — Microsoft Outlook Remote Code Execution Vulnerability Vulnerabilidad de ejecución remota de código de Microsoft Outlook • https://github.com/d0rb/CVE-2024-21378 • CWE-94: Improper Control of Generation of Code ('Code Injection') •