Microsoft Word 2016 vulnerabilities
71 known vulnerabilities affecting microsoft/microsoft_word_2016.
Total CVEs
71
CISA KEV
1
actively exploited
Public exploits
1
Exploited in wild
2
Severity breakdown
CRITICAL2HIGH54MEDIUM15
Vulnerabilities
Page 4 of 4
CVE-2026-55124P4MEDIUMCVSS 5.5≥ 16.0.1, < 16.0.5561.10002026-07-14
CVE-2026-55124 [MEDIUM] CWE-20 CVE-2026-55124: Improper validation of specified type of input in Microsoft Office Word allows an unauthorized attac
Improper validation of specified type of input in Microsoft Office Word allows an unauthorized attacker to disclose information locally.
nvd
CVE-2026-55142P4MEDIUMCVSS 5.5≥ 16.0.1, < 16.0.5561.10002026-07-14
CVE-2026-55142 [MEDIUM] CWE-197 CVE-2026-55142: Numeric truncation error in Microsoft Office Word allows an unauthorized attacker to disclose inform
Numeric truncation error in Microsoft Office Word allows an unauthorized attacker to disclose information locally.
nvd
CVE-2026-55050P4MEDIUMCVSS 5.5≥ 16.0.1, < 16.0.5561.10002026-07-14
CVE-2026-55050 [MEDIUM] CWE-125 CVE-2026-55050: Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information
Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information locally.
nvd
CVE-2020-1583P4MEDIUMCVSS 5.5≥ 16.0.1, < publication2020-08-17
CVE-2020-1583 [MEDIUM] CVE-2020-1583: An information disclosure vulnerability exists when Microsoft Word improperly discloses the contents
An information disclosure vulnerability exists when Microsoft Word improperly discloses the contents of its memory. An attacker who exploited the vulnerability could use the information to compromise the user’s computer or data.
To exploit the vulnerability, an attacker could craft a special document file and then convince the user to open it. An attacker mus
nvd
CVE-2020-1503P4MEDIUMCVSS 5.5≥ 16.0.1, < publication2020-08-17
CVE-2020-1503 [MEDIUM] CVE-2020-1503: An information disclosure vulnerability exists when Microsoft Word improperly discloses the contents
An information disclosure vulnerability exists when Microsoft Word improperly discloses the contents of its memory. An attacker who exploited the vulnerability could use the information to compromise the user’s computer or data.
To exploit the vulnerability, an attacker could craft a special document file and then convince the user to open it. An attacker mus
nvd
CVE-2020-17020P4MEDIUMCVSS 5.5≥ 16.0.1, < publication2020-11-11
CVE-2020-17020 [MEDIUM] CVE-2020-17020: Microsoft Word Security Feature Bypass Vulnerability
Microsoft Word Security Feature Bypass Vulnerability
nvd
CVE-2024-49065P4MEDIUMCVSS 5.5≥ 16.0.1, < 16.0.5478.10002024-12-12
CVE-2024-49065 [MEDIUM] CWE-125 CVE-2024-49065: Microsoft Office Remote Code Execution Vulnerability
Microsoft Office Remote Code Execution Vulnerability
nvd
CVE-2026-40421P4MEDIUMCVSS 4.3≥ 16.0.1, < 16.0.5552.10002026-05-12
CVE-2026-40421 [MEDIUM] CWE-73 CVE-2026-40421: Files or directories accessible to external parties in Microsoft Office Word allows an unauthorized
Files or directories accessible to external parties in Microsoft Office Word allows an unauthorized attacker to disclose information locally.
nvd
CVE-2022-41103P4MEDIUMCVSS 5.5≥ 16.0.1, < 16.0.5369.10002022-11-09
CVE-2022-41103 [MEDIUM] CVE-2022-41103: Microsoft Word Information Disclosure Vulnerability
Microsoft Word Information Disclosure Vulnerability
nvd
CVE-2022-41060P4MEDIUMCVSS 5.5≥ 16.0.1, < 16.0.5369.10002022-11-09
CVE-2022-41060 [MEDIUM] CVE-2022-41060: Microsoft Word Information Disclosure Vulnerability
Microsoft Word Information Disclosure Vulnerability
nvd
CVE-2022-24511MEDIUMCVSS 5.5≥ 16.0.1, < 16.0.5290.10002022-03-09
CVE-2022-24511 [MEDIUM] Microsoft Office Word Tampering Vulnerability
Microsoft Office Word Tampering Vulnerability
Microsoft Office Word Tampering Vulnerability
cvelistv5
← Previous4 / 4