CVEs (188)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Microsoft 6365 Apps ExcelOffice+3 moreFeb 23, 2026 Sep 11, 2020 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 <p>A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory. An attacker who successfully exploited the vulnerability could run arbitrary code...Show more |
1Microsoft 6365 Apps ExcelOffice+3 moreFeb 23, 2026 Sep 11, 2020 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 <p>An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory. An attacker who exploited the vulnerability could use the information to compromise the user’s compu...Show more |
1Microsoft 7365 Apps OfficeOffice Online Server+4 moreFeb 23, 2026 Sep 11, 2020 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 <p>A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory. An attacker who successfully exploited the vulnerability could use a specially crafted file t...Show more |
1Microsoft 7365 Apps OfficeOffice Online Server+4 moreFeb 23, 2026 Aug 17, 2020 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 An information disclosure vulnerability exists when Microsoft Word improperly discloses the contents of its memory. An attacker who exploited the vulnerability could use the information to compromise the user’s computer...Show more |
1Microsoft 7365 Apps OfficeOffice Online Server+4 moreFeb 23, 2026 Aug 17, 2020 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 An information disclosure vulnerability exists when Microsoft Word improperly discloses the contents of its memory. An attacker who exploited the vulnerability could use the information to compromise the user’s computer...Show more |
1Microsoft 4365 Apps OfficeOffice Online Server+1 moreFeb 23, 2026 Aug 17, 2020 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 An information disclosure vulnerability exists when Microsoft Word improperly discloses the contents of its memory. An attacker who exploited the vulnerability could use the information to compromise the user’s computer...Show more |
1Microsoft 6365 Apps ExcelOffice+3 moreFeb 23, 2026 Aug 17, 2020 N/A· v4 8.8 HIGH· v3 9.3 HIGH· v2 A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory. An attacker who successfully exploited the vulnerability could run arbitrary code in...Show more |
1Microsoft 7Office Office Online ServerOffice Web Apps+4 moreNov 21, 2024 Jul 14, 2020 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory, aka 'Microsoft Word Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-14...Show more |
1Microsoft 8365 Apps OfficeOffice Online Server+5 moreNov 21, 2024 Jul 14, 2020 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory, aka 'Microsoft Word Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-14...Show more |
1Microsoft 8365 Apps OfficeOffice Online Server+5 moreNov 21, 2024 Jul 14, 2020 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory, aka 'Microsoft Word Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-14...Show more |
1Microsoft 6365 Apps OfficeOffice Online Server+3 moreNov 21, 2024 Jul 14, 2020 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 An information disclosure vulnerability exists when Microsoft Office improperly discloses the contents of its memory, aka 'Microsoft Office Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-1342. |
1Microsoft 2Office Online Server Office Web AppsNov 21, 2024 Jul 14, 2020 N/A· v4 6.1 MEDIUM· v3 4.3 MEDIUM· v2 A spoofing vulnerability exists when an Office Web Apps server does not properly sanitize a specially crafted request, aka 'Office Web Apps XSS Vulnerability'. |
1Microsoft 7365 Apps OfficeOffice Online Server+4 moreNov 21, 2024 Jul 14, 2020 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 An information disclosure vulnerability exists when Microsoft Office software reads out of bound memory due to an uninitialized variable, which could disclose the contents of memory, aka 'Microsoft Office Information Dis...Show more |
1Microsoft 7Office Office 365 ProplusOffice Online Server+4 moreNov 21, 2024 Apr 15, 2020 N/A· v4 7.8 HIGH· v3 9.3 HIGH· v2 A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory, aka 'Microsoft Word Remote Code Execution Vulnerability'. |
1Microsoft 8Office Office 365 ProplusOffice Online Server+5 moreNov 21, 2024 Mar 12, 2020 N/A· v4 7.8 HIGH· v3 9.3 HIGH· v2 A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory, aka 'Microsoft Word Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-08...Show more |
1Microsoft 3Office Office Online ServerSharepoint ServerNov 21, 2024 Mar 12, 2020 N/A· v4 7.8 HIGH· v3 9.3 HIGH· v2 A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory, aka 'Microsoft Word Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-08...Show more |
1Microsoft 7Office Office 365 ProplusOffice Online Server+4 moreNov 21, 2024 Mar 12, 2020 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory, aka 'Microsoft Word Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-08...Show more |
1Microsoft 1Office Online Server Nov 21, 2024 Feb 11, 2020 N/A· v4 5.4 MEDIUM· v3 5.8 MEDIUM· v2 A spoofing vulnerability exists when Office Online Server does not validate origin in cross-origin communications correctly, aka 'Microsoft Office Online Server Spoofing Vulnerability'. |
1Microsoft 1Office Online Server Nov 21, 2024 Jan 14, 2020 N/A· v4 5.4 MEDIUM· v3 5.8 MEDIUM· v2 A spoofing vulnerability exists when Office Online does not validate origin in cross-origin communications correctly, aka 'Microsoft Office Online Spoofing Vulnerability'. |
1Microsoft 1Office Online Server Nov 21, 2024 Nov 12, 2019 N/A· v4 5.4 MEDIUM· v3 5.8 MEDIUM· v2 A spoofing vulnerability exists when Office Online does not validate origin in cross-origin communications handlers correctly, aka 'Microsoft Office Online Spoofing Vulnerability'. This CVE ID is unique from CVE-2019-144...Show more |