Microsoft Office 2016 vulnerabilities
121 known vulnerabilities affecting microsoft/microsoft_office_2016.
Total CVEs
121
CISA KEV
5
actively exploited
Public exploits
2
Exploited in wild
4
Severity breakdown
CRITICAL1HIGH101MEDIUM19
Vulnerabilities
Page 3 of 7
CVE-2025-24080HIGHCVSS 7.8≥ 16.0.0, < 16.0.5491.10012025-03-11
CVE-2025-24080 [HIGH] CWE-416 CVE-2025-24080: Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
cvelistv5nvd
CVE-2025-24083HIGHCVSS 7.8≥ 16.0.0, < 16.0.5491.10012025-03-11
CVE-2025-24083 [HIGH] CWE-822 CVE-2025-24083: Untrusted pointer dereference in Microsoft Office allows an unauthorized attacker to execute code lo
Untrusted pointer dereference in Microsoft Office allows an unauthorized attacker to execute code locally.
cvelistv5nvd
CVE-2025-24057HIGHCVSS 7.8≥ 16.0.0, < 16.0.5491.10012025-03-11
CVE-2025-24057 [HIGH] CWE-122 CVE-2025-24057: Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code local
Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.
cvelistv5nvd
CVE-2025-21392HIGHCVSS 7.8≥ 16.0.0, < 16.0.5487.10002025-02-11
CVE-2025-21392 [HIGH] CWE-416 CVE-2025-21392: Microsoft Office Remote Code Execution Vulnerability
Microsoft Office Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2025-21346HIGHCVSS 7.8≥ 16.0.0, < 16.0.5483.10012025-01-14
CVE-2025-21346 [HIGH] CWE-693 CVE-2025-21346: Microsoft Office Security Feature Bypass Vulnerability
Microsoft Office Security Feature Bypass Vulnerability
cvelistv5nvd
CVE-2024-43600HIGHCVSS 7.8≥ 16.0.0, < 16.0.5478.10002024-12-12
CVE-2024-43600 [HIGH] CWE-284 CVE-2024-43600: Microsoft Office Elevation of Privilege Vulnerability
Microsoft Office Elevation of Privilege Vulnerability
cvelistv5nvd
CVE-2024-49059HIGHCVSS 7.0≥ 16.0.0, < 16.0.5478.10042024-12-12
CVE-2024-49059 [HIGH] CWE-59 CVE-2024-49059: Microsoft Office Elevation of Privilege Vulnerability
Microsoft Office Elevation of Privilege Vulnerability
cvelistv5nvd
CVE-2024-49031HIGHCVSS 7.8≥ 16.0.0, < 16.0.5474.10002024-11-12
CVE-2024-49031 [HIGH] CWE-126 CVE-2024-49031: Microsoft Office Graphics Remote Code Execution Vulnerability
Microsoft Office Graphics Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2024-49032HIGHCVSS 7.8≥ 16.0.0, < 16.0.5474.10002024-11-12
CVE-2024-49032 [HIGH] CWE-416 CVE-2024-49032: Microsoft Office Graphics Remote Code Execution Vulnerability
Microsoft Office Graphics Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2024-43609MEDIUMCVSS 6.5≥ 16.0.0, < 16.0.5469.10012024-10-08
CVE-2024-43609 [MEDIUM] CWE-200 Microsoft Office Spoofing Vulnerability
Microsoft Office Spoofing Vulnerability
Microsoft Office Spoofing Vulnerability
cvelistv5
CVE-2024-38200MEDIUMCVSS 6.5PoC≥ 16.0.0, < 16.0.5461.10012024-08-08
CVE-2024-38200 [MEDIUM] CWE-200 Microsoft Office Spoofing Vulnerability
Microsoft Office Spoofing Vulnerability
Microsoft Office Spoofing Vulnerability
cvelistv5
CVE-2024-38021HIGHCVSS 8.8≥ 16.0.0, < 16.0.5456.10002024-07-09
CVE-2024-38021 [HIGH] CWE-20 CVE-2024-38021: Microsoft Outlook Remote Code Execution Vulnerability
Microsoft Outlook Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2024-38020MEDIUMCVSS 6.5≥ 16.0.0, < 16.0.5456.10002024-07-09
CVE-2024-38020 [MEDIUM] CWE-200 Microsoft Outlook Spoofing Vulnerability
Microsoft Outlook Spoofing Vulnerability
Microsoft Outlook Spoofing Vulnerability
cvelistv5
CVE-2024-30104HIGHCVSS 7.8≥ 16.0.0, < 16.0.5452.10002024-06-11
CVE-2024-30104 [HIGH] CWE-59 CVE-2024-30104: Microsoft Office Remote Code Execution Vulnerability
Microsoft Office Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2024-30101HIGHCVSS 7.5≥ 16.0.0, < 16.0.5452.10002024-06-11
CVE-2024-30101 [HIGH] CWE-416 CVE-2024-30101: Microsoft Office Remote Code Execution Vulnerability
Microsoft Office Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2024-21413CRITICALCVSS 9.8KEV≥ 16.0.0, < 16.0.5435.10012024-02-13
CVE-2024-21413 [CRITICAL] CWE-20 CVE-2024-21413: Microsoft Outlook Remote Code Execution Vulnerability
Microsoft Outlook Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2024-20673HIGHCVSS 7.8≥ 16.0.0, < 16.0.5435.10012024-02-13
CVE-2024-20673 [HIGH] CWE-693 CVE-2024-20673: Microsoft Office Remote Code Execution Vulnerability
Microsoft Office Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2023-35636MEDIUMCVSS 6.5≥ 16.0.0, < 16.0.5426.10002023-12-12
CVE-2023-35636 [MEDIUM] CWE-200 CVE-2023-35636: Microsoft Outlook Information Disclosure Vulnerability
Microsoft Outlook Information Disclosure Vulnerability
cvelistv5nvd
CVE-2023-36009MEDIUMCVSS 5.5≥ 16.0.0, < 16.0.5426.10002023-12-12
CVE-2023-36009 [MEDIUM] CVE-2023-36009: Microsoft Word Information Disclosure Vulnerability
Microsoft Word Information Disclosure Vulnerability
cvelistv5nvd
CVE-2023-36413MEDIUMCVSS 6.5≥ 16.0.0, < 16.0.5422.10002023-11-14
CVE-2023-36413 [MEDIUM] CVE-2023-36413: Microsoft Office Security Feature Bypass Vulnerability
Microsoft Office Security Feature Bypass Vulnerability
cvelistv5nvd