CVE-2010-2571
- EPSS 21.77%
- Veröffentlicht 16.12.2010 19:33:02
- Zuletzt bearbeitet 16.06.2026 23:21:00
Array index error in pubconv.dll (aka the Publisher Converter DLL) in Microsoft Publisher 2002 SP3 and 2003 SP3 allows remote attackers to execute arbitrary code via a crafted Publisher 97 file, aka "Memory Corruption Due To Invalid Index Into Array ...
CVE-2010-2570
- EPSS 25.11%
- Veröffentlicht 16.12.2010 19:33:02
- Zuletzt bearbeitet 16.06.2026 23:21:00
Heap-based buffer overflow in pubconv.dll (aka the Publisher Converter DLL) in Microsoft Publisher 2002 SP3, 2003 SP3, 2007 SP2, and 2010 allows remote attackers to execute arbitrary code via a crafted Publisher file that uses an old file format, aka...
CVE-2010-2569
- EPSS 21%
- Veröffentlicht 16.12.2010 19:33:01
- Zuletzt bearbeitet 16.06.2026 23:21:00
pubconv.dll (aka the Publisher Converter DLL) in Microsoft Publisher 2002 SP3, 2003 SP3, and 2007 SP2 does not properly handle an unspecified size field in certain older file formats, which allows remote attackers to execute arbitrary code or cause a...
CVE-2010-0479
- EPSS 23.42%
- Veröffentlicht 14.04.2010 16:00:01
- Zuletzt bearbeitet 16.06.2026 23:16:15
Buffer overflow in Microsoft Office Publisher 2002 SP3, 2003 SP3, and 2007 SP1 and SP2 allows remote attackers to execute arbitrary code via a crafted Publisher file, aka "Microsoft Office Publisher File Conversion TextBox Processing Buffer Overflow ...
CVE-2008-3068
- EPSS 17.4%
- Veröffentlicht 07.07.2008 23:41:00
- Zuletzt bearbeitet 16.06.2026 22:55:01
Microsoft Crypto API 5.131.2600.2180 through 6.0, as used in Outlook, Windows Live Mail, and Office 2007, performs Certificate Revocation List (CRL) checks by using an arbitrary URL from a certificate embedded in a (1) S/MIME e-mail message or (2) si...
CVE-2008-0104
- EPSS 28.95%
- Veröffentlicht 12.02.2008 23:00:00
- Zuletzt bearbeitet 16.06.2026 22:48:56
Unspecified vulnerability in Microsoft Office Publisher 2000, 2002, and 2003 SP2 allows remote attackers to execute arbitrary code via a crafted .pub file, aka "Publisher Memory Corruption Vulnerability."
- EPSS 36.91%
- Veröffentlicht 12.02.2008 23:00:00
- Zuletzt bearbeitet 16.06.2026 22:48:56
Unspecified vulnerability in Microsoft Office Publisher 2000, 2002, and 2003 SP2 allows remote attackers to execute arbitrary code via a crafted .pub file, related to invalid "memory values," aka "Publisher Invalid Memory Reference Vulnerability."
CVE-2007-6534
- EPSS 11.06%
- Veröffentlicht 27.12.2007 23:46:00
- Zuletzt bearbeitet 16.06.2026 22:48:16
Multiple unspecified vulnerabilities in Microsoft Office Publisher allow user-assisted remote attackers to cause a denial of service (application crash) via a crafted PUB file, possibly involving wordart.
CVE-2007-1754
- EPSS 32.78%
- Veröffentlicht 10.07.2007 22:30:00
- Zuletzt bearbeitet 16.06.2026 22:38:14
PUBCONV.DLL in Microsoft Office Publisher 2007 does not properly clear memory when transferring data from disk to memory, which allows user-assisted remote attackers to execute arbitrary code via a malformed .pub page via a certain negative value, wh...
- EPSS 17.78%
- Veröffentlicht 27.02.2007 02:28:00
- Zuletzt bearbeitet 16.06.2026 22:36:59
Unspecified vulnerability in Publisher 2007 in Microsoft Office 2007 allows remote attackers to execute arbitrary code via unspecified vectors, related to a "file format vulnerability." NOTE: this information is based upon a vague pre-advisory with n...