CVE-2008-6063
- EPSS 10.27%
- Veröffentlicht 05.02.2009 01:30:00
- Zuletzt bearbeitet 16.06.2026 23:01:30
Microsoft Word 2007, when the "Save as PDF" add-on is enabled, places an absolute pathname in the Subject field during an "Email as PDF" operation, which allows remote attackers to obtain sensitive information such as the sender's account name and a ...
CVE-2008-2752
- EPSS 27.77%
- Veröffentlicht 18.06.2008 19:41:00
- Zuletzt bearbeitet 16.06.2026 22:54:23
Microsoft Word 2000 9.0.2812 and 2003 11.8106.8172 does not properly handle unordered lists, which allows user-assisted remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via a c...
CVE-2008-1092
- EPSS 25.88%
- Veröffentlicht 25.03.2008 16:44:00
- Zuletzt bearbeitet 16.06.2026 22:50:58
Buffer overflow in msjet40.dll before 4.0.9505.0 in Microsoft Jet Database Engine allows remote attackers to execute arbitrary code via a crafted Word file, as exploited in the wild in March 2008. NOTE: as of 20080513, Microsoft has stated that this...
CVE-2008-0109
- EPSS 30.87%
- Veröffentlicht 12.02.2008 23:00:00
- Zuletzt bearbeitet 16.06.2026 22:48:57
Word in Microsoft Office 2000 SP3, XP SP3, Office 2003 SP2, and Office Word Viewer 2003 allows remote attackers to execute arbitrary code via crafted fields within the File Information Block (FIB) of a Word file, which triggers length calculation err...
CVE-2007-3899
- EPSS 29.17%
- Veröffentlicht 09.10.2007 22:17:00
- Zuletzt bearbeitet 16.06.2026 22:42:59
Unspecified vulnerability in Microsoft Word 2000 SP3, Word 2002 SP3, and Office 2004 for Mac allows user-assisted remote attackers to execute arbitrary code via a malformed string in a Word file, aka "Word Memory Corruption Vulnerability."
CVE-2007-1202
- EPSS 29.48%
- Veröffentlicht 08.05.2007 23:19:00
- Zuletzt bearbeitet 16.06.2026 22:37:08
Word (or Word Viewer) in Microsoft Office 2000 SP3, XP SP3, 2003 SP2, 2004 for Mac, and Works Suite 2004, 2005, and 2006 does not properly parse certain rich text "property strings of certain control words," which allows user-assisted remote attacker...
CVE-2007-1910
- EPSS 24.95%
- Veröffentlicht 10.04.2007 23:19:00
- Zuletzt bearbeitet 16.06.2026 22:38:33
Buffer overflow in wwlib.dll in Microsoft Word 2007 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted document, as demonstrated by file789-1.doc.
CVE-2007-1911
- EPSS 11.92%
- Veröffentlicht 10.04.2007 23:19:00
- Zuletzt bearbeitet 16.06.2026 22:38:33
Multiple unspecified vulnerabilities in Microsoft Word 2007 allow remote attackers to cause a denial of service (CPU consumption) via crafted documents, as demonstrated by (1) file798-1.doc and (2) file613-1.doc, possibly related to a buffer overflow...
CVE-2007-0208
- EPSS 30.11%
- Veröffentlicht 13.02.2007 21:28:00
- Zuletzt bearbeitet 16.06.2026 22:35:07
Microsoft Word in Office 2000 SP3, XP SP3, Office 2003 SP2, Works Suite 2004 to 2006, and Office 2004 for Mac does not correctly check the properties of certain documents and warn the user of macro content, which allows user-assisted remote attackers...
CVE-2007-0870
- EPSS 20.52%
- Veröffentlicht 11.02.2007 21:28:00
- Zuletzt bearbeitet 16.06.2026 22:36:26
Unspecified vulnerability in Microsoft Word 2000 allows remote attackers to cause a denial of service (crash) via unknown vectors, a different vulnerability than CVE-2006-5994, CVE-2006-6456, CVE-2006-6561, and CVE-2007-0515, a variant of Exploit-MS0...