Microsoft

Office

1007 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 69.42%
  • Veröffentlicht 09.01.2013 18:09:40
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Microsoft XML Core Services (aka MSXML) 3.0, 5.0, and 6.0 does not properly parse XML content, which allows remote attackers to execute arbitrary code via a crafted web page, aka "MSXML Integer Truncation Vulnerability."

  • EPSS 27.2%
  • Veröffentlicht 09.01.2013 18:09:40
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Microsoft XML Core Services (aka MSXML) 4.0, 5.0, and 6.0 does not properly parse XML content, which allows remote attackers to execute arbitrary code via a crafted web page, aka "MSXML XSLT Vulnerability."

  • EPSS 65.94%
  • Veröffentlicht 14.11.2012 00:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Heap-based buffer overflow in Microsoft Excel 2003 SP3, 2007 SP2 and SP3, and 2010 SP1; Office 2008 and 2011 for Mac; and Office Compatibility Pack SP2 and SP3 allows remote attackers to execute arbitrary code via a crafted spreadsheet, aka "Excel Se...

  • EPSS 58.33%
  • Veröffentlicht 14.11.2012 00:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Use-after-free vulnerability in Microsoft Excel 2003 SP3, 2007 SP2 and SP3, and 2010 SP1, and Office 2008 and 2011 for Mac, allows remote attackers to execute arbitrary code via a crafted spreadsheet, aka "Excel SST Invalid Length Use After Free Vuln...

  • EPSS 65.94%
  • Veröffentlicht 14.11.2012 00:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Stack-based buffer overflow in Microsoft Excel 2007 SP2 and SP3 and 2010 SP1; Office 2011 for Mac; Excel Viewer; and Office Compatibility Pack SP2 and SP3 allows remote attackers to execute arbitrary code via a crafted spreadsheet, aka "Excel Stack O...

Exploit
  • EPSS 17.97%
  • Veröffentlicht 25.10.2012 10:51:29
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Microsoft Excel Viewer (aka Xlview.exe) and Excel in Microsoft Office 2007 (aka Office 12) allow remote attackers to cause a denial of service (read access violation and application crash) via a crafted spreadsheet file, as demonstrated by a .xls fil...

Warnung
  • EPSS 91.95%
  • Veröffentlicht 15.08.2012 01:55:01
  • Zuletzt bearbeitet 22.10.2025 01:15:44

The TabStrip ActiveX control in the Common Controls in MSCOMCTL.OCX in Microsoft Office 2003 SP3, Office 2003 Web Components SP3, Office 2007 SP2 and SP3, Office 2010 SP1, SQL Server 2000 SP4, SQL Server 2005 SP4, SQL Server 2008 SP2, SP3, R2, R2 SP1...

  • EPSS 53.23%
  • Veröffentlicht 15.08.2012 01:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Microsoft Office 2007 SP2 and SP3 and 2010 SP1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted Computer Graphics Metafile (CGM) file, aka "CGM File Format Memory Corruption Vulnerabilit...

  • EPSS 0.52%
  • Veröffentlicht 10.07.2012 21:55:06
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Microsoft Office for Mac 2011 uses world-writable permissions for the "Applications/Microsoft Office 2011/" directory and certain other directories, which allows local users to gain privileges by placing a Trojan horse executable file in one of these...

  • EPSS 1.36%
  • Veröffentlicht 10.07.2012 21:55:05
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Untrusted search path vulnerability in VBE6.dll in Microsoft Office 2003 SP3, 2007 SP2 and SP3, and 2010 Gold and SP1; Microsoft Visual Basic for Applications (VBA); and Summit Microsoft Visual Basic for Applications SDK allows local users to gain pr...