Microsoft Publisher vulnerabilities
42 known vulnerabilities affecting microsoft/publisher.
Total CVEs
42
CISA KEV
2
actively exploited
Public exploits
1
Exploited in wild
2
Severity breakdown
CRITICAL29HIGH11MEDIUM2
Vulnerabilities
Page 2 of 3
CVE-2013-1320P3CRITICALCVSS 10.0v20032013-05-15
CVE-2013-1320 [CRITICAL] CWE-119 CVE-2013-1320: Buffer overflow in Microsoft Publisher 2003 SP3 allows remote attackers to execute arbitrary code vi
Buffer overflow in Microsoft Publisher 2003 SP3 allows remote attackers to execute arbitrary code via a crafted Publisher file, aka "Publisher Buffer Overflow Vulnerability."
nvd
CVE-2010-2570P3CRITICALCVSS 9.3v2002v2003+2 more2010-12-16
CVE-2010-2570 [CRITICAL] CWE-119 CVE-2010-2570: Heap-based buffer overflow in pubconv.dll (aka the Publisher Converter DLL) in Microsoft Publisher 2
Heap-based buffer overflow in pubconv.dll (aka the Publisher Converter DLL) in Microsoft Publisher 2002 SP3, 2003 SP3, 2007 SP2, and 2010 allows remote attackers to execute arbitrary code via a crafted Publisher file that uses an old file format, aka "Heap Overrun in pubconv.dll Vulnerability."
nvd
CVE-2007-1754P3CRITICALCVSS 9.3v20072007-07-10
CVE-2007-1754 [CRITICAL] CWE-399 CVE-2007-1754: PUBCONV.DLL in Microsoft Office Publisher 2007 does not properly clear memory when transferring data
PUBCONV.DLL in Microsoft Office Publisher 2007 does not properly clear memory when transferring data from disk to memory, which allows user-assisted remote attackers to execute arbitrary code via a malformed .pub page via a certain negative value, which bypasses a sanitization procedure that initializes critical pointers to NULL, aka the "Publisher
nvd
CVE-2015-2503P3CRITICALCVSS 9.3v2007v2010+2 more2015-11-11
CVE-2015-2503 [CRITICAL] CWE-264 CVE-2015-2503: Microsoft Access 2007 SP3, Excel 2007 SP3, InfoPath 2007 SP3, OneNote 2007 SP3, PowerPoint 2007 SP3,
Microsoft Access 2007 SP3, Excel 2007 SP3, InfoPath 2007 SP3, OneNote 2007 SP3, PowerPoint 2007 SP3, Project 2007 SP3, Publisher 2007 SP3, Visio 2007 SP3, Word 2007 SP3, Office 2007 IME (Japanese) SP3, Access 2010 SP2, Excel 2010 SP2, InfoPath 2010 SP2, OneNote 2010 SP2, PowerPoint 2010 SP2, Project 2010 SP2, Publisher 2010 SP2, Visio 2010 SP2, Word
nvd
CVE-2004-0573P3HIGHCVSS 7.5v2000v2002+1 more2004-09-28
CVE-2004-0573 [HIGH] CVE-2004-0573: Buffer overflow in the converter for Microsoft WordPerfect 5.x on Office 2000, Office XP, Office 200
Buffer overflow in the converter for Microsoft WordPerfect 5.x on Office 2000, Office XP, Office 2003, and Works Suites 2001 through 2004 allows remote attackers to execute arbitrary code via a malicious document or website.
nvd
CVE-2020-0760P3HIGHCVSS 8.8v2010v2013+1 more2020-04-15
CVE-2020-0760 [HIGH] CVE-2020-0760: A remote code execution vulnerability exists when Microsoft Office improperly loads arbitrary type l
A remote code execution vulnerability exists when Microsoft Office improperly loads arbitrary type libraries, aka 'Microsoft Office Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0991.
nvd
CVE-2010-2569P3CRITICALCVSS 9.3v2002v2003+1 more2010-12-16
CVE-2010-2569 [CRITICAL] CWE-94 CVE-2010-2569: pubconv.dll (aka the Publisher Converter DLL) in Microsoft Publisher 2002 SP3, 2003 SP3, and 2007 SP
pubconv.dll (aka the Publisher Converter DLL) in Microsoft Publisher 2002 SP3, 2003 SP3, and 2007 SP2 does not properly handle an unspecified size field in certain older file formats, which allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via a crafted Publisher file, aka "Size Value Heap Corrupt
nvd
CVE-2010-3954P3CRITICALCVSS 9.3v2002v2003+1 more2010-12-16
CVE-2010-3954 [CRITICAL] CWE-119 CVE-2010-3954: Microsoft Publisher 2002 SP3, 2003 SP3, and 2010 allows remote attackers to execute arbitrary code o
Microsoft Publisher 2002 SP3, 2003 SP3, and 2010 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted Publisher file, aka "Microsoft Publisher Memory Corruption Vulnerability."
nvd
CVE-2011-1508P3CRITICALCVSS 9.3v2003v20072011-12-14
CVE-2011-1508 [CRITICAL] CWE-94 CVE-2011-1508: Microsoft Publisher 2003 SP3, and 2007 SP2 and SP3, does not properly manage memory allocations for
Microsoft Publisher 2003 SP3, and 2007 SP2 and SP3, does not properly manage memory allocations for function pointers, which allows user-assisted remote attackers to execute arbitrary code via a crafted Publisher file, aka "Publisher Function Pointer Overwrite Vulnerability."
nvd
CVE-2006-0001P3CRITICALCVSS 9.3v2000v2002+1 more2006-09-12
CVE-2006-0001 [CRITICAL] CWE-119 CVE-2006-0001: Stack-based buffer overflow in Microsoft Publisher 2000 through 2003 allows user-assisted remote att
Stack-based buffer overflow in Microsoft Publisher 2000 through 2003 allows user-assisted remote attackers to execute arbitrary code via a crafted PUB file, which causes an overflow when parsing fonts.
nvd
CVE-2017-8725P3HIGHCVSS 7.8v2007v20102017-09-13
CVE-2017-8725 [HIGH] CWE-119 CVE-2017-8725: A remote code execution vulnerability exists in Microsoft Publisher 2007 Service Pack 3 and Microsof
A remote code execution vulnerability exists in Microsoft Publisher 2007 Service Pack 3 and Microsoft Publisher 2010 Service Pack 2 when they fail to properly handle objects in memory, aka "Microsoft Office Publisher Remote Code Execution".
nvd
CVE-2016-7289P3HIGHCVSS 7.8v20102016-12-20
CVE-2016-7289 [HIGH] CWE-119 CVE-2016-7289: Microsoft Publisher 2010 SP2 allows remote attackers to execute arbitrary code or cause a denial of
Microsoft Publisher 2010 SP2 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted document, aka "Microsoft Office Memory Corruption Vulnerability."
nvd
CVE-2007-1117P3CRITICALCVSS 10.0v20072007-02-27
CVE-2007-1117 [CRITICAL] CVE-2007-1117: Unspecified vulnerability in Publisher 2007 in Microsoft Office 2007 allows remote attackers to exec
Unspecified vulnerability in Publisher 2007 in Microsoft Office 2007 allows remote attackers to execute arbitrary code via unspecified vectors, related to a "file format vulnerability." NOTE: this information is based upon a vague pre-advisory with no actionable information. However, the advisory is from a reliable source.
nvd
CVE-2008-3068P3HIGHCVSS 7.5v2003v20072008-07-07
CVE-2008-3068 [HIGH] CVE-2008-3068: Microsoft Crypto API 5.131.2600.2180 through 6.0, as used in Outlook, Windows Live Mail, and Office
Microsoft Crypto API 5.131.2600.2180 through 6.0, as used in Outlook, Windows Live Mail, and Office 2007, performs Certificate Revocation List (CRL) checks by using an arbitrary URL from a certificate embedded in a (1) S/MIME e-mail message or (2) signed document, which allows remote attackers to obtain reading times and IP addresses of recipients, and port-scan
nvd
CVE-2018-8245P3HIGHCVSS 7.8v2010-sp22018-06-14
CVE-2018-8245 [HIGH] CVE-2018-8245: A remote code execution vulnerability exists when Microsoft Publisher fails to utilize features that
A remote code execution vulnerability exists when Microsoft Publisher fails to utilize features that lock down the Local Machine zone when instantiating OLE objects, aka "Microsoft Publisher Remote Code Execution Vulnerability." This affects Microsoft Publisher.
nvd
CVE-2014-1759P3CRITICALCVSS 9.3v2003v20072014-04-08
CVE-2014-1759 [CRITICAL] CVE-2014-1759: pubconv.dll in Microsoft Publisher 2003 SP3 and 2007 SP3 allows remote attackers to execute arbitrar
pubconv.dll in Microsoft Publisher 2003 SP3 and 2007 SP3 allows remote attackers to execute arbitrary code or cause a denial of service (incorrect pointer dereference and application crash) via a crafted .pub file, aka "Arbitrary Pointer Dereference Vulnerability."
nvd
CVE-2006-3877P3CRITICALCVSS 9.3v2000v2002+1 more2006-10-10
CVE-2006-3877 [CRITICAL] CVE-2006-3877: Unspecified vulnerability in PowerPoint in Microsoft Office 2000, Office 2002, Office 2003, Office 2
Unspecified vulnerability in PowerPoint in Microsoft Office 2000, Office 2002, Office 2003, Office 2004 for Mac, and Office v.X for Mac allows user-assisted attackers to execute arbitrary code via an unspecified "crafted file," a different vulnerability than CVE-2006-3435, CVE-2006-4694, and CVE-2006-3876.
nvd
CVE-2023-28295P3HIGHCVSS 7.8v2013v20162023-06-17
CVE-2023-28295 [HIGH] CWE-190 CVE-2023-28295: Microsoft Publisher Remote Code Execution Vulnerability
Microsoft Publisher Remote Code Execution Vulnerability
nvd
CVE-2023-28287P3HIGHCVSS 7.8v2013v20162023-06-17
CVE-2023-28287 [HIGH] CWE-416 CVE-2023-28287: Microsoft Publisher Remote Code Execution Vulnerability
Microsoft Publisher Remote Code Execution Vulnerability
nvd
CVE-2024-20673P3HIGHCVSS 7.8v20162024-02-13
CVE-2024-20673 [HIGH] CWE-693 CVE-2024-20673: Microsoft Office Remote Code Execution Vulnerability
Microsoft Office Remote Code Execution Vulnerability
nvd