CVE-2026-44824
- EPSS 0.46%
- Veröffentlicht 09.06.2026 17:17:18
- Zuletzt bearbeitet 23.07.2026 08:10:00
Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2026-33113
- EPSS 0.52%
- Veröffentlicht 09.06.2026 17:17:04
- Zuletzt bearbeitet 23.07.2026 08:10:00
Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an unauthorized attacker to perform spoofing over a network.
- EPSS 0.66%
- Veröffentlicht 01.06.2026 18:26:43
- Zuletzt bearbeitet 22.07.2026 08:10:00
Improper neutralization of special elements used in an os command ('os command injection') in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
CVE-2026-45659
- EPSS 9.86%
- Veröffentlicht 22.05.2026 22:04:33
- Zuletzt bearbeitet 23.07.2026 11:10:00
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
CVE-2026-40367
- EPSS 0.45%
- Veröffentlicht 12.05.2026 16:59:20
- Zuletzt bearbeitet 01.06.2026 19:16:34
Access of resource using incompatible type ('type confusion') in Microsoft Office Word allows an unauthorized attacker to execute code locally.
CVE-2026-40365
- EPSS 0.96%
- Veröffentlicht 12.05.2026 16:59:19
- Zuletzt bearbeitet 01.06.2026 19:16:34
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
CVE-2026-40357
- EPSS 1.7%
- Veröffentlicht 12.05.2026 16:59:16
- Zuletzt bearbeitet 13.05.2026 20:48:58
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
CVE-2026-33112
- EPSS 3.1%
- Veröffentlicht 12.05.2026 16:59:08
- Zuletzt bearbeitet 13.05.2026 20:53:28
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
CVE-2026-33110
- EPSS 1.97%
- Veröffentlicht 12.05.2026 16:59:07
- Zuletzt bearbeitet 13.05.2026 20:53:49
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
- EPSS 1.98%
- Veröffentlicht 12.05.2026 16:58:39
- Zuletzt bearbeitet 13.05.2026 20:52:06
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.