cbcvebase.

Microsoft Word 2016 vulnerabilities

71 known vulnerabilities affecting microsoft/microsoft_word_2016.

Total CVEs
71
CISA KEV
1
actively exploited
Public exploits
1
Exploited in wild
2
Severity breakdown
CRITICAL2HIGH54MEDIUM15

Vulnerabilities

Page 4 of 4
CVE-2026-55124P4MEDIUMCVSS 5.5≥ 16.0.1, < 16.0.5561.10002026-07-14
CVE-2026-55124 [MEDIUM] CWE-20 CVE-2026-55124: Improper validation of specified type of input in Microsoft Office Word allows an unauthorized attac Improper validation of specified type of input in Microsoft Office Word allows an unauthorized attacker to disclose information locally.
nvd
CVE-2026-55142P4MEDIUMCVSS 5.5≥ 16.0.1, < 16.0.5561.10002026-07-14
CVE-2026-55142 [MEDIUM] CWE-197 CVE-2026-55142: Numeric truncation error in Microsoft Office Word allows an unauthorized attacker to disclose inform Numeric truncation error in Microsoft Office Word allows an unauthorized attacker to disclose information locally.
nvd
CVE-2026-55050P4MEDIUMCVSS 5.5≥ 16.0.1, < 16.0.5561.10002026-07-14
CVE-2026-55050 [MEDIUM] CWE-125 CVE-2026-55050: Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information locally.
nvd
CVE-2020-1583P4MEDIUMCVSS 5.5≥ 16.0.1, < publication2020-08-17
CVE-2020-1583 [MEDIUM] CVE-2020-1583: An information disclosure vulnerability exists when Microsoft Word improperly discloses the contents An information disclosure vulnerability exists when Microsoft Word improperly discloses the contents of its memory. An attacker who exploited the vulnerability could use the information to compromise the user’s computer or data. To exploit the vulnerability, an attacker could craft a special document file and then convince the user to open it. An attacker mus
nvd
CVE-2020-1503P4MEDIUMCVSS 5.5≥ 16.0.1, < publication2020-08-17
CVE-2020-1503 [MEDIUM] CVE-2020-1503: An information disclosure vulnerability exists when Microsoft Word improperly discloses the contents An information disclosure vulnerability exists when Microsoft Word improperly discloses the contents of its memory. An attacker who exploited the vulnerability could use the information to compromise the user’s computer or data. To exploit the vulnerability, an attacker could craft a special document file and then convince the user to open it. An attacker mus
nvd
CVE-2020-17020P4MEDIUMCVSS 5.5≥ 16.0.1, < publication2020-11-11
CVE-2020-17020 [MEDIUM] CVE-2020-17020: Microsoft Word Security Feature Bypass Vulnerability Microsoft Word Security Feature Bypass Vulnerability
nvd
CVE-2024-49065P4MEDIUMCVSS 5.5≥ 16.0.1, < 16.0.5478.10002024-12-12
CVE-2024-49065 [MEDIUM] CWE-125 CVE-2024-49065: Microsoft Office Remote Code Execution Vulnerability Microsoft Office Remote Code Execution Vulnerability
nvd
CVE-2026-40421P4MEDIUMCVSS 4.3≥ 16.0.1, < 16.0.5552.10002026-05-12
CVE-2026-40421 [MEDIUM] CWE-73 CVE-2026-40421: Files or directories accessible to external parties in Microsoft Office Word allows an unauthorized Files or directories accessible to external parties in Microsoft Office Word allows an unauthorized attacker to disclose information locally.
nvd
CVE-2022-41103P4MEDIUMCVSS 5.5≥ 16.0.1, < 16.0.5369.10002022-11-09
CVE-2022-41103 [MEDIUM] CVE-2022-41103: Microsoft Word Information Disclosure Vulnerability Microsoft Word Information Disclosure Vulnerability
nvd
CVE-2022-41060P4MEDIUMCVSS 5.5≥ 16.0.1, < 16.0.5369.10002022-11-09
CVE-2022-41060 [MEDIUM] CVE-2022-41060: Microsoft Word Information Disclosure Vulnerability Microsoft Word Information Disclosure Vulnerability
nvd
CVE-2022-24511MEDIUMCVSS 5.5≥ 16.0.1, < 16.0.5290.10002022-03-09
CVE-2022-24511 [MEDIUM] Microsoft Office Word Tampering Vulnerability Microsoft Office Word Tampering Vulnerability Microsoft Office Word Tampering Vulnerability
cvelistv5
Microsoft Word 2016 vulnerabilities | cvebase