Microsoft Office vulnerabilities
1,005 known vulnerabilities affecting microsoft/office.
Total CVEs
1,005
CISA KEV
35
actively exploited
Public exploits
103
Exploited in wild
68
Severity breakdown
CRITICAL277HIGH567MEDIUM155LOW6
Vulnerabilities
Page 26 of 51
CVE-2025-49695P3HIGHCVSS 8.4v2016v20192025-07-08
CVE-2025-49695 [HIGH] CWE-416 CVE-2025-49695: Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
nvd
CVE-2025-47953P3HIGHCVSS 8.4v2016v20192025-06-10
CVE-2025-47953 [HIGH] CWE-641 CVE-2025-47953: Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
nvd
CVE-2026-40366P3HIGHCVSS 8.4v20192026-05-12
CVE-2026-40366 [HIGH] CWE-416 CVE-2026-40366: Access of resource using incompatible type ('type confusion') in Microsoft Office Word allows an una
Access of resource using incompatible type ('type confusion') in Microsoft Office Word allows an unauthorized attacker to execute code locally.
nvd
CVE-2026-40367P3HIGHCVSS 8.4v20192026-05-12
CVE-2026-40367 [HIGH] CWE-822 CVE-2026-40367: Access of resource using incompatible type ('type confusion') in Microsoft Office Word allows an una
Access of resource using incompatible type ('type confusion') in Microsoft Office Word allows an unauthorized attacker to execute code locally.
nvd
CVE-2011-1277P3CRITICALCVSS 9.3v20082011-06-16
CVE-2011-1277 [CRITICAL] CWE-119 CVE-2011-1277: Microsoft Excel 2002 SP3, Office 2008 for Mac, and Open XML File Format Converter for Mac do not pro
Microsoft Excel 2002 SP3, Office 2008 for Mac, and Open XML File Format Converter for Mac do not properly validate record information during parsing of Excel spreadsheets, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted spreadsheet, aka "Excel Memory Corruption Vulnerability."
nvd
CVE-2021-31179P3HIGHCVSS 7.8v2013v2016+1 more2021-05-11
CVE-2021-31179 [HIGH] CVE-2021-31179: Microsoft Office Remote Code Execution Vulnerability
Microsoft Office Remote Code Execution Vulnerability
nvd
CVE-2007-0215P3HIGHCVSS 7.6v2000v2003+3 more2007-05-08
CVE-2007-0215 [HIGH] CVE-2007-0215: Stack-based buffer overflow in Microsoft Excel 2000 SP3, 2002 SP3, 2003 SP2, and 2003 Viewer allows
Stack-based buffer overflow in Microsoft Excel 2000 SP3, 2002 SP3, 2003 SP2, and 2003 Viewer allows user-assisted remote attackers to execute arbitrary code via a .XLS BIFF file with a malformed Named Graph record, which results in memory corruption.
nvd
CVE-2025-59236P3HIGHCVSS 7.8v20192025-10-14
CVE-2025-59236 [HIGH] CWE-416 CVE-2025-59236: Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
nvd
CVE-2023-36765P3CRITICALCVSS 9.8v20192023-09-12
CVE-2023-36765 [CRITICAL] CWE-269 CVE-2023-36765: Microsoft Office Elevation of Privilege Vulnerability
Microsoft Office Elevation of Privilege Vulnerability
nvd
CVE-2020-16933P3HIGHCVSS 8.8v2016v20192020-10-16
CVE-2020-16933 [HIGH] CVE-2020-16933: <p>A security feature bypass vulnerability exists in Microsoft Word software when it fails to proper
A security feature bypass vulnerability exists in Microsoft Word software when it fails to properly handle .LNK files. An attacker who successfully exploited the vulnerability could use a specially crafted file to perform actions in the security context of the current user. For example, the file could then take actions on behalf of the logged-on user with the
nvd
CVE-2017-8744P3HIGHCVSS 7.8v2007v2010+2 more2017-09-13
CVE-2017-8744 [HIGH] CVE-2017-8744: A remote code execution vulnerability exists in Excel Services, Microsoft Excel 2007 Service Pack 3,
A remote code execution vulnerability exists in Excel Services, Microsoft Excel 2007 Service Pack 3, Microsoft Excel 2010 Service Pack 2, Microsoft Excel 2013 Service Pack 1, Microsoft Excel 2013 RT Service Pack 1, and Microsoft Excel 2016 when they fail to properly handle objects in memory, aka "Microsoft Office Memory Corruption Vulnerability". This CVE ID is
nvd
CVE-2008-1455P3MEDIUMCVSS 6.8v2000v2003+3 more2008-08-13
CVE-2008-1455 [MEDIUM] CWE-399 CVE-2008-1455: A "memory calculation error" in Microsoft Office PowerPoint 2000 SP3, 2002 SP3, 2003 SP2, and 2007 t
A "memory calculation error" in Microsoft Office PowerPoint 2000 SP3, 2002 SP3, 2003 SP2, and 2007 through SP1; Office Compatibility Pack for Word, Excel, and PowerPoint 2007 through SP1; and Office 2004 for Mac allows remote attackers to execute arbitrary code via a PowerPoint file with crafted list values that trigger memory corruption, aka "Parsing
nvd
CVE-2025-30388P3HIGHCVSS 7.8fixed in 16.0.14326.225022025-05-13
CVE-2025-30388 [HIGH] CWE-122 CVE-2025-30388: Heap-based buffer overflow in Windows Win32K - GRFX allows an unauthorized attacker to execute code
Heap-based buffer overflow in Windows Win32K - GRFX allows an unauthorized attacker to execute code locally.
nvd
CVE-2006-4693P3CRITICALCVSS 9.3vv.x2006-10-10
CVE-2006-4693 [CRITICAL] CVE-2006-4693: Unspecified vulnerability in Microsoft Word 2004 for Mac and v.X for Mac allows remote user-assisted
Unspecified vulnerability in Microsoft Word 2004 for Mac and v.X for Mac allows remote user-assisted attackers to execute arbitrary code via a crafted string in a Word file, a different issue than CVE-2006-3647 and CVE-2006-3651.
nvd
CVE-2017-0289P4MEDIUMCVSS 5.0PoCv2007v20102017-06-15
CVE-2017-0289 [MEDIUM] CVE-2017-0289: Graphics in Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold
Graphics in Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows improper disclosure of memory contents, aka "Windows Graphics Information Disclosure Vulnerability". This CVE ID is unique from CVE-2017-0286, CVE-2017-0287, CVE-2017-028
nvd
CVE-2017-0287P4MEDIUMCVSS 5.0PoCv2007v20102017-06-15
CVE-2017-0287 [MEDIUM] CVE-2017-0287: Graphics in Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold
Graphics in Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows improper disclosure of memory contents, aka "Graphics Uniscribe Information Disclosure Vulnerability". This CVE ID is unique from CVE-2017-0286, CVE-2017-0288, CVE-2017-0
nvd
CVE-2017-0286P4MEDIUMCVSS 5.0PoCv2007v20102017-06-15
CVE-2017-0286 [MEDIUM] CWE-200 CVE-2017-0286: Graphics in Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold
Graphics in Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows improper disclosure of memory contents, aka "Windows Graphics Information Disclosure Vulnerability". This CVE ID is unique from CVE-2017-0287, CVE-2017-0288, CVE-
nvd
CVE-2017-0285P4MEDIUMCVSS 5.0PoCv2007v20102017-06-15
CVE-2017-0285 [MEDIUM] CVE-2017-0285: Uniscribe in Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gol
Uniscribe in Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, 1703, Windows Server 2016, Microsoft Office 2007 SP3, Microsoft Office 2010 SP2, and Microsoft Office Word Viewer allows improper disclosure of memory contents, aka "Windows Uniscribe Information Disclosure
nvd
CVE-2017-0288P4MEDIUMCVSS 5.0PoCv2007v20102017-06-15
CVE-2017-0288 [MEDIUM] CVE-2017-0288: Graphics in Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold
Graphics in Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows improper disclosure of memory contents, aka "Windows Graphics Information Disclosure Vulnerability". This CVE ID is unique from CVE-2017-0286, CVE-2017-0287, CVE-2017-028
nvd
CVE-2017-0284P4MEDIUMCVSS 5.0PoCv2007v20102017-06-15
CVE-2017-0284 [MEDIUM] CVE-2017-0284: Uniscribe in Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gol
Uniscribe in Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, 1703, Windows Server 2016, Microsoft Office 2007 SP3, and Microsoft Office 2010 SP2 allows improper disclosure of memory contents, aka "Windows Uniscribe Information Disclosure Vulnerability". This CVE ID i
nvd