Microsoft Office 365 Proplus vulnerabilities

62 known vulnerabilities affecting microsoft/office_365_proplus.

Total CVEs
62
CISA KEV
1
actively exploited
Public exploits
0
Exploited in wild
2
Severity breakdown
CRITICAL3HIGH46MEDIUM13

Vulnerabilities

Page 1 of 4
CVE-2020-0906HIGHCVSS 8.8v32-bit Systemsv64-bit Systems2020-04-15
CVE-2020-0906 [HIGH] CVE-2020-0906: A remote code execution vulnerability exists in Microsoft Excel software when the software fails to A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0979.
cvelistv5nvd
CVE-2020-0980HIGHCVSS 7.8v32-bit Systemsv64-bit Systems2020-04-15
CVE-2020-0980 [HIGH] CVE-2020-0980: A remote code execution vulnerability exists in Microsoft Word software when it fails to properly ha A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory, aka 'Microsoft Word Remote Code Execution Vulnerability'.
cvelistv5nvd
CVE-2020-0760HIGHCVSS 8.8v32-bit Systemsv64-bit Systems2020-04-15
CVE-2020-0760 [HIGH] CVE-2020-0760: A remote code execution vulnerability exists when Microsoft Office improperly loads arbitrary type l A remote code execution vulnerability exists when Microsoft Office improperly loads arbitrary type libraries, aka 'Microsoft Office Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0991.
cvelistv5nvd
CVE-2020-0979HIGHCVSS 8.8v32-bit Systemsv64-bit Systems2020-04-15
CVE-2020-0979 [HIGH] CVE-2020-0979: A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0906.
cvelistv5
CVE-2020-0961HIGHCVSS 7.8v32-bit Systemsv64-bit Systems2020-04-15
CVE-2020-0961 [HIGH] CVE-2020-0961: A remote code execution vulnerability exists when the Microsoft Office Access Connectivity Engine im A remote code execution vulnerability exists when the Microsoft Office Access Connectivity Engine improperly handles objects in memory, aka 'Microsoft Office Access Connectivity Engine Remote Code Execution Vulnerability'.
cvelistv5nvd
CVE-2020-0991HIGHCVSS 8.8v32-bit Systemsv64-bit Systems2020-04-15
CVE-2020-0991 [HIGH] CVE-2020-0991: A remote code execution vulnerability exists in Microsoft Office software when the software fails to properly handle objects in memory, aka 'Microsoft A remote code execution vulnerability exists in Microsoft Office software when the software fails to properly handle objects in memory, aka 'Microsoft Office Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0760.
cvelistv5
CVE-2020-0850HIGHCVSS 8.8v32-bit Systemsv64-bit Systems2020-03-12
CVE-2020-0850 [HIGH] CVE-2020-0850: A remote code execution vulnerability exists in Microsoft Word software when it fails to properly ha A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory, aka 'Microsoft Word Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0851, CVE-2020-0852, CVE-2020-0855, CVE-2020-0892.
cvelistv5nvd
CVE-2020-0892HIGHCVSS 8.8v32-bit Systemsv64-bit Systems2020-03-12
CVE-2020-0892 [HIGH] CVE-2020-0892: A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory, aka 'Microsoft Word Remote A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory, aka 'Microsoft Word Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0850, CVE-2020-0851, CVE-2020-0852, CVE-2020-0855.
cvelistv5
CVE-2020-0855HIGHCVSS 8.8v32-bit Systemsv64-bit Systems2020-03-12
CVE-2020-0855 [HIGH] CVE-2020-0855: A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory, aka 'Microsoft Word Remote A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory, aka 'Microsoft Word Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0850, CVE-2020-0851, CVE-2020-0852, CVE-2020-0892.
cvelistv5
CVE-2020-0851HIGHCVSS 8.8v32-bit Systemsv64-bit Systems2020-03-12
CVE-2020-0851 [HIGH] CVE-2020-0851: A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory, aka 'Microsoft Word Remote A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory, aka 'Microsoft Word Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0850, CVE-2020-0852, CVE-2020-0855, CVE-2020-0892.
cvelistv5
CVE-2020-0759HIGHCVSS 8.8v32-bit Systemsv64-bit Systems2020-02-11
CVE-2020-0759 [HIGH] CVE-2020-0759: A remote code execution vulnerability exists in Microsoft Excel software when the software fails to A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'.
cvelistv5nvd
CVE-2020-0697HIGHCVSS 7.8v32-bit Systemsv64-bit Systems2020-02-11
CVE-2020-0697 [HIGH] CVE-2020-0697: An elevation of privilege vulnerability exists in Microsoft Office OLicenseHeartbeat task, where an An elevation of privilege vulnerability exists in Microsoft Office OLicenseHeartbeat task, where an attacker who successfully exploited this vulnerability could run this task as SYSTEM.To exploit the vulnerability, an authenticated attacker would need to place a specially crafted file in a specific location, thereby allowing arbitrary file corruption.The securit
cvelistv5nvd
CVE-2020-0696MEDIUMCVSS 6.5v32-bit Systemsv64-bit Systems2020-02-11
CVE-2020-0696 [MEDIUM] CVE-2020-0696: A security feature bypass vulnerability exists in Microsoft Outlook software when it improperly hand A security feature bypass vulnerability exists in Microsoft Outlook software when it improperly handles the parsing of URI formats, aka 'Microsoft Outlook Security Feature Bypass Vulnerability'.
cvelistv5nvd
CVE-2020-0652HIGHCVSS 7.8v32-bit Systemsv64-bit Systems2020-01-14
CVE-2020-0652 [HIGH] CWE-787 CVE-2020-0652: A remote code execution vulnerability exists in Microsoft Office software when the software fails to A remote code execution vulnerability exists in Microsoft Office software when the software fails to properly handle objects in memory, aka 'Microsoft Office Memory Corruption Vulnerability'.
cvelistv5nvd
CVE-2020-0651HIGHCVSS 7.8v32-bit Systemsv64-bit Systems2020-01-14
CVE-2020-0651 [HIGH] CVE-2020-0651: A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0650, CVE-2020-0653.
cvelistv5
CVE-2020-0653HIGHCVSS 7.8v32-bit Systemsv64-bit Systems2020-01-14
CVE-2020-0653 [HIGH] CVE-2020-0653: A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0650, CVE-2020-0651.
cvelistv5
CVE-2020-0650HIGHCVSS 7.8v32-bit Systemsv64-bit Systems2020-01-14
CVE-2020-0650 [HIGH] CVE-2020-0650: A remote code execution vulnerability exists in Microsoft Excel software when the software fails to A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0651, CVE-2020-0653.
cvelistv5nvd
CVE-2019-1462HIGHCVSS 7.8v32-bit Systemsv64-bit Systems2019-12-10
CVE-2019-1462 [HIGH] CWE-908 CVE-2019-1462: A remote code execution vulnerability exists in Microsoft PowerPoint software when the software fail A remote code execution vulnerability exists in Microsoft PowerPoint software when the software fails to properly handle objects in memory, aka 'Microsoft PowerPoint Remote Code Execution Vulnerability'.
cvelistv5nvd
CVE-2019-1463MEDIUMCVSS 5.5v32-bit Systemsv64-bit Systems2019-12-10
CVE-2019-1463 [MEDIUM] CVE-2019-1463: An information disclosure vulnerability exists in Microsoft Access software when the software fails to properly handle objects in memory, aka 'Microso An information disclosure vulnerability exists in Microsoft Access software when the software fails to properly handle objects in memory, aka 'Microsoft Access Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2019-1400.
cvelistv5
CVE-2019-1464MEDIUMCVSS 5.5v32-bit Systemsv64-bit Systems2019-12-10
CVE-2019-1464 [MEDIUM] CWE-200 CVE-2019-1464: An information disclosure vulnerability exists when Microsoft Excel improperly discloses the content An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka 'Microsoft Excel Information Disclosure Vulnerability'.
cvelistv5nvd