Microsoft Project vulnerabilities
5 known vulnerabilities affecting microsoft/microsoft_project.
Total CVEs
5
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH4MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2020-1449HIGHCVSS 7.8v2013 Service Pack 1 (32-bit editions)v2013 Service Pack 1 (64-bit editions)+4 more2020-07-14
CVE-2020-1449 [HIGH] CWE-346 CVE-2020-1449: A remote code execution vulnerability exists in Microsoft Project software when the software fails t
A remote code execution vulnerability exists in Microsoft Project software when the software fails to check the source markup of a file, aka 'Microsoft Project Remote Code Execution Vulnerability'.
cvelistv5nvd
CVE-2020-1322MEDIUMCVSS 6.5v2013 Service Pack 1 (32-bit editions)v2013 Service Pack 1 (64-bit editions)+4 more2020-06-09
CVE-2020-1322 [MEDIUM] CWE-125 CVE-2020-1322: An information disclosure vulnerability exists when Microsoft Project reads out of bound memory due
An information disclosure vulnerability exists when Microsoft Project reads out of bound memory due to an uninitialized variable, aka 'Microsoft Project Information Disclosure Vulnerability'.
cvelistv5nvd
CVE-2020-0760HIGHCVSS 8.8v2013 Service Pack 1 (32-bit editions)v2013 Service Pack 1 (64-bit editions)+4 more2020-04-15
CVE-2020-0760 [HIGH] CVE-2020-0760: A remote code execution vulnerability exists when Microsoft Office improperly loads arbitrary type libraries, aka 'Microsoft Office Remote Code Execut
A remote code execution vulnerability exists when Microsoft Office improperly loads arbitrary type libraries, aka 'Microsoft Office Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0991.
cvelistv5
CVE-2019-1264HIGHCVSS 7.8v2010 Service Pack 2 (32-bit editions)v2010 Service Pack 2 (64-bit editions)+4 more2019-09-11
CVE-2019-1264 [HIGH] CWE-20 CVE-2019-1264: A security feature bypass vulnerability exists when Microsoft Office improperly handles input, aka '
A security feature bypass vulnerability exists when Microsoft Office improperly handles input, aka 'Microsoft Office Security Feature Bypass Vulnerability'.
cvelistv5nvd
CVE-2018-8575HIGHCVSS 7.8v2010 Service Pack 2 (32-bit editions)v2010 Service Pack 2 (64-bit editions)+2 more2018-11-14
CVE-2018-8575 [HIGH] CVE-2018-8575: A remote code execution vulnerability exists in Microsoft Project software when it fails to properly
A remote code execution vulnerability exists in Microsoft Project software when it fails to properly handle objects in memory, aka "Microsoft Project Remote Code Execution Vulnerability." This affects Microsoft Project, Office 365 ProPlus, Microsoft Project Server.
cvelistv5nvd