CVE-2025-54905
- EPSS 0.06%
- Published 09.09.2025 17:00:57
- Last modified 12.09.2025 16:52:24
Untrusted pointer dereference in Microsoft Office Word allows an unauthorized attacker to disclose information locally.
CVE-2025-53736
- EPSS 0.05%
- Published 12.08.2025 17:10:34
- Last modified 18.08.2025 17:03:06
Buffer over-read in Microsoft Office Word allows an unauthorized attacker to disclose information locally.
CVE-2025-53733
- EPSS 0.16%
- Published 12.08.2025 17:10:32
- Last modified 18.08.2025 17:00:01
Incorrect conversion between numeric types in Microsoft Office Word allows an unauthorized attacker to execute code locally.
CVE-2025-49706
- EPSS 20.94%
- Published 08.07.2025 16:58:07
- Last modified 30.07.2025 01:00:01
Improper authentication in Microsoft Office SharePoint allows an unauthorized attacker to perform spoofing over a network.
CVE-2025-47994
- EPSS 0.32%
- Published 08.07.2025 16:57:19
- Last modified 15.07.2025 14:09:43
Deserialization of untrusted data in Microsoft Office allows an unauthorized attacker to elevate privileges locally.
CVE-2025-47172
- EPSS 0.2%
- Published 10.06.2025 17:02:41
- Last modified 09.07.2025 13:25:03
Improper neutralization of special elements used in an sql command ('sql injection') in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
CVE-2025-47168
- EPSS 0.08%
- Published 10.06.2025 17:02:39
- Last modified 09.07.2025 14:06:45
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
CVE-2025-47169
- EPSS 0.08%
- Published 10.06.2025 17:02:39
- Last modified 09.07.2025 13:22:51
Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally.
CVE-2025-47166
- EPSS 3.47%
- Published 10.06.2025 17:02:38
- Last modified 09.07.2025 14:02:40
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
CVE-2025-47163
- EPSS 1.89%
- Published 10.06.2025 17:02:36
- Last modified 09.07.2025 14:00:48
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.