cbcvebase.

Microsoft Word 2016 vulnerabilities

120 known vulnerabilities affecting microsoft/microsoft_word_2016.

Total CVEs
120
CISA KEV
1
actively exploited
Public exploits
1
Exploited in wild
2
Severity breakdown
CRITICAL3HIGH79MEDIUM38

Vulnerabilities

Page 1 of 6
CVE-2023-36761P2MEDIUMCVSS 6.5KEV≥ 16.0.1, < 16.0.5413.10002023-09-12
CVE-2023-36761 [MEDIUM] CWE-20 CVE-2023-36761: Microsoft Word Information Disclosure Vulnerability Microsoft Word Information Disclosure Vulnerability
nvd
CVE-2023-21716P1CRITICALCVSS 9.8ExploitedPoC≥ 16.0.1, < 16.0.5383.10002023-02-14
CVE-2023-21716 [CRITICAL] CWE-190 CVE-2023-21716: Microsoft Word Remote Code Execution Vulnerability Microsoft Word Remote Code Execution Vulnerability
nvd
CVE-2026-78509P2CRITICALCVSS 9.8≥ 16.0.1, < 16.0.5569.10002026-09-08
CVE-2026-78509 [CRITICAL] CWE-122 CVE-2026-78509: Heap-based buffer overflow in Microsoft Office Outlook allows an unauthorized attacker to execute co Heap-based buffer overflow in Microsoft Office Outlook allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-69759P2HIGHCVSS 8.8≥ 16.0.1, < 16.0.5569.10002026-09-08
CVE-2026-69759 [HIGH] CWE-121 CVE-2026-69759: Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-69686P2HIGHCVSS 8.8≥ 16.0.1, < 16.0.5569.10002026-09-08
CVE-2026-69686 [HIGH] CWE-121 CVE-2026-69686: Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-69722P2HIGHCVSS 8.8≥ 16.0.1, < 16.0.5569.10002026-09-08
CVE-2026-69722 [HIGH] CWE-121 CVE-2026-69722: Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-78504P3HIGHCVSS 8.8≥ 16.0.1, < 16.0.5569.10002026-09-08
CVE-2026-78504 [HIGH] CWE-121 CVE-2026-78504: Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-69671P3HIGHCVSS 8.8≥ 16.0.1, < 16.0.5569.10022026-09-08
CVE-2026-69671 [HIGH] CWE-122 CVE-2026-69671: Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-72972P3HIGHCVSS 8.8≥ 16.0.1, < 16.0.5569.10002026-09-08
CVE-2026-72972 [HIGH] CWE-122 CVE-2026-72972: Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-69556P3HIGHCVSS 8.8≥ 16.0.1, < 16.0.5569.10022026-09-08
CVE-2026-69556 [HIGH] CWE-122 CVE-2026-69556: Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-72973P3HIGHCVSS 8.8≥ 16.0.1, < 16.0.5569.10002026-09-08
CVE-2026-72973 [HIGH] CWE-122 CVE-2026-72973: Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-78511P3HIGHCVSS 8.8≥ 16.0.1, < 16.0.5569.10002026-09-08
CVE-2026-78511 [HIGH] CWE-122 CVE-2026-78511: Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-69764P3HIGHCVSS 8.8≥ 16.0.1, < 16.0.5569.10022026-09-08
CVE-2026-69764 [HIGH] CWE-122 CVE-2026-69764: Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-78525P3HIGHCVSS 8.8≥ 16.0.1, < 16.0.5569.10002026-09-08
CVE-2026-78525 [HIGH] CWE-416 CVE-2026-78525: Use after free in Microsoft Office Outlook allows an unauthorized attacker to execute code over a ne Use after free in Microsoft Office Outlook allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-80080P3HIGHCVSS 8.8≥ 16.0.1, < 16.0.5569.10002026-09-08
CVE-2026-80080 [HIGH] CWE-415 CVE-2026-80080: Double free in Microsoft Office Word allows an unauthorized attacker to execute code over a network. Double free in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-40364P3HIGHCVSS 8.4≥ 16.0.1, < 16.0.5552.10002026-05-12
CVE-2026-40364 [HIGH] CWE-122 CVE-2026-40364: Access of resource using incompatible type ('type confusion') in Microsoft Office Word allows an una Access of resource using incompatible type ('type confusion') in Microsoft Office Word allows an unauthorized attacker to execute code locally.
nvd
CVE-2026-78514P3HIGHCVSS 8.8≥ 16.0.1, < 16.0.5569.10002026-09-08
CVE-2026-78514 [HIGH] CWE-416 CVE-2026-78514: Use after free in Microsoft Office Word allows an unauthorized attacker to execute code over a netwo Use after free in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-78517P3HIGHCVSS 8.8≥ 16.0.1, < 16.0.5569.10002026-09-08
CVE-2026-78517 [HIGH] CWE-122 CVE-2026-78517: Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-78521P3HIGHCVSS 8.8≥ 16.0.1, < 16.0.5569.10002026-09-08
CVE-2026-78521 [HIGH] CWE-122 CVE-2026-78521: Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-78512P3HIGHCVSS 8.8≥ 16.0.1, < 16.0.5569.10032026-09-08
CVE-2026-78512 [HIGH] CWE-122 CVE-2026-78512: Numeric truncation error in Microsoft Office Word allows an unauthorized attacker to execute code ov Numeric truncation error in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
nvd
Microsoft Word 2016 vulnerabilities | cvebase