Microsoft Outlook vulnerabilities
11 known vulnerabilities affecting microsoft/microsoft_outlook.
Total CVEs
11
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH7MEDIUM4
Vulnerabilities
Page 1 of 1
CVE-2020-1349HIGHCVSS 7.8v2016 (32-bit edition)v2016 (64-bit edition)+5 more2020-07-14
CVE-2020-1349 [HIGH] CVE-2020-1349: A remote code execution vulnerability exists in Microsoft Outlook software when it fails to properly
A remote code execution vulnerability exists in Microsoft Outlook software when it fails to properly handle objects in memory, aka 'Microsoft Outlook Remote Code Execution Vulnerability'.
cvelistv5nvd
CVE-2020-0760HIGHCVSS 8.8v2016 (32-bit edition)v2016 (64-bit edition)+5 more2020-04-15
CVE-2020-0760 [HIGH] CVE-2020-0760: A remote code execution vulnerability exists when Microsoft Office improperly loads arbitrary type libraries, aka 'Microsoft Office Remote Code Execut
A remote code execution vulnerability exists when Microsoft Office improperly loads arbitrary type libraries, aka 'Microsoft Office Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0991.
cvelistv5
CVE-2020-0696MEDIUMCVSS 6.5v2016 (32-bit edition)v2016 (64-bit edition)+5 more2020-02-11
CVE-2020-0696 [MEDIUM] CVE-2020-0696: A security feature bypass vulnerability exists in Microsoft Outlook software when it improperly hand
A security feature bypass vulnerability exists in Microsoft Outlook software when it improperly handles the parsing of URI formats, aka 'Microsoft Outlook Security Feature Bypass Vulnerability'.
cvelistv5nvd
CVE-2019-1084MEDIUMCVSS 6.5v2010 Service Pack 2 (32-bit editions)v2010 Service Pack 2 (64-bit editions)+4 more2019-07-15
CVE-2019-1084 [MEDIUM] CWE-200 CVE-2019-1084: An information disclosure vulnerability exists when Exchange allows creation of entities with Displa
An information disclosure vulnerability exists when Exchange allows creation of entities with Display Names having non-printable characters. An authenticated attacker could exploit this vulnerability by creating entities with invalid display names, which, when added to conversations, remain invisible. This security update addresses the issue by valida
cvelistv5nvd
CVE-2019-0559MEDIUMCVSS 6.5v2010 Service Pack 2 (32-bit editions)v2010 Service Pack 2 (64-bit editions)+5 more2019-01-08
CVE-2019-0559 [MEDIUM] CVE-2019-0559: An information disclosure vulnerability exists when Microsoft Outlook improperly handles certain typ
An information disclosure vulnerability exists when Microsoft Outlook improperly handles certain types of messages, aka "Microsoft Outlook Information Disclosure Vulnerability." This affects Office 365 ProPlus, Microsoft Office, Microsoft Outlook.
cvelistv5nvd
CVE-2018-8587HIGHCVSS 7.8v2010 Service Pack 2 (32-bit editions)v2010 Service Pack 2 (64-bit editions)+5 more2018-12-12
CVE-2018-8587 [HIGH] CVE-2018-8587: A remote code execution vulnerability exists in Microsoft Outlook software when it fails to properly
A remote code execution vulnerability exists in Microsoft Outlook software when it fails to properly handle objects in memory, aka "Microsoft Outlook Remote Code Execution Vulnerability." This affects Office 365 ProPlus, Microsoft Office, Microsoft Outlook.
cvelistv5nvd
CVE-2018-8522HIGHCVSS 7.8v2010 Service Pack 2 (32-bit editions)v2010 Service Pack 2 (64-bit editions)+5 more2018-11-14
CVE-2018-8522 [HIGH] CVE-2018-8522: A remote code execution vulnerability exists in Microsoft Outlook software when it fails to properly
A remote code execution vulnerability exists in Microsoft Outlook software when it fails to properly handle objects in memory, aka "Microsoft Outlook Remote Code Execution Vulnerability." This affects Office 365 ProPlus, Microsoft Office, Microsoft Outlook. This CVE ID is unique from CVE-2018-8524, CVE-2018-8576, CVE-2018-8582.
cvelistv5nvd
CVE-2018-8524HIGHCVSS 7.8v2010 Service Pack 2 (32-bit editions)v2010 Service Pack 2 (64-bit editions)+5 more2018-11-14
CVE-2018-8524 [HIGH] CVE-2018-8524: A remote code execution vulnerability exists in Microsoft Outlook software when it fails to properly handle objects in memory, aka "Microsoft Outlook
A remote code execution vulnerability exists in Microsoft Outlook software when it fails to properly handle objects in memory, aka "Microsoft Outlook Remote Code Execution Vulnerability." This affects Office 365 ProPlus, Microsoft Office, Microsoft Outlook. This CVE ID is unique from CVE-2018-8522, CVE-2018-8576,
cvelistv5
CVE-2018-8576HIGHCVSS 7.8v2010 Service Pack 2 (32-bit editions)v2010 Service Pack 2 (64-bit editions)+5 more2018-11-14
CVE-2018-8576 [HIGH] CVE-2018-8576: A remote code execution vulnerability exists in Microsoft Outlook software when it fails to properly handle objects in memory, aka "Microsoft Outlook
A remote code execution vulnerability exists in Microsoft Outlook software when it fails to properly handle objects in memory, aka "Microsoft Outlook Remote Code Execution Vulnerability." This affects Office 365 ProPlus, Microsoft Office, Microsoft Outlook. This CVE ID is unique from CVE-2018-8522, CVE-2018-8524,
cvelistv5
CVE-2018-8582HIGHCVSS 7.8v2010 Service Pack 2 (32-bit editions)v2010 Service Pack 2 (64-bit editions)+5 more2018-11-14
CVE-2018-8582 [HIGH] CVE-2018-8582: A remote code execution vulnerability exists in the way that Microsoft Outlook parses specially modified rule export files, aka "Microsoft Outlook Rem
A remote code execution vulnerability exists in the way that Microsoft Outlook parses specially modified rule export files, aka "Microsoft Outlook Remote Code Execution Vulnerability." This affects Office 365 ProPlus, Microsoft Office, Microsoft Outlook. This CVE ID is unique from CVE-2018-8522, CVE-2018-8524, C
cvelistv5
CVE-2018-8244MEDIUMCVSS 6.5v2010 Service Pack 2 (32-bit editions)v2010 Service Pack 2 (64-bit editions)+5 more2018-06-14
CVE-2018-8244 [MEDIUM] CWE-20 CVE-2018-8244: An elevation of privilege vulnerability exists when Microsoft Outlook does not validate attachment h
An elevation of privilege vulnerability exists when Microsoft Outlook does not validate attachment headers properly, aka "Microsoft Outlook Elevation of Privilege Vulnerability." This affects Microsoft Office, Microsoft Outlook.
cvelistv5nvd