CVE-2015-0085
- EPSS 34.1%
- Published 11.03.2015 10:59:12
- Last modified 12.04.2025 10:46:40
Use-after-free vulnerability in Microsoft Office 2007 SP3, Excel 2007 SP3, PowerPoint 2007 SP3, Word 2007 SP3, Office 2010 SP2, Excel 2010 SP2, PowerPoint 2010 SP2, Word 2010 SP2, Office 2013 Gold and SP1, Word 2013 Gold and SP1, Office 2013 RT Gold ...
- EPSS 13.96%
- Published 14.05.2014 11:13:04
- Last modified 12.04.2025 10:46:40
Microsoft Windows SharePoint Services 3.0 SP3; SharePoint Server 2007 SP3, 2010 SP1 and SP2, and 2013 Gold and SP1; SharePoint Foundation 2010 SP1 and SP2 and 2013 Gold and SP1; Project Server 2010 SP1 and SP2 and 2013 Gold and SP1; Web Applications ...
CVE-2013-3847
- EPSS 61.62%
- Published 11.09.2013 14:03:48
- Last modified 11.04.2025 00:51:21
Microsoft Word Automation Services in SharePoint Server 2010 SP1, Word Web App 2010 SP1 in Office Web Apps 2010, Word 2003 SP3, Word 2007 SP3, Word 2010 SP1, Office Compatibility Pack SP3, and Word Viewer allow remote attackers to execute arbitrary c...
CVE-2013-3179
- EPSS 11.88%
- Published 11.09.2013 14:03:48
- Last modified 11.04.2025 00:51:21
Cross-site scripting (XSS) vulnerability in Microsoft SharePoint Server 2007 SP3, 2010 SP1 and SP2, and 2013 allows remote attackers to inject arbitrary web script or HTML via a crafted request, aka "SharePoint XSS Vulnerability."
- EPSS 67.3%
- Published 11.09.2013 14:03:48
- Last modified 11.04.2025 00:51:21
The default configuration of Microsoft SharePoint Portal Server 2003 SP3, SharePoint Server 2007 SP3 and 2010 SP1 and SP2, and Office Web Apps 2010 does not set the EnableViewStateMac attribute, which allows remote attackers to execute arbitrary code...
CVE-2013-1315
- EPSS 69.34%
- Published 11.09.2013 14:03:48
- Last modified 11.04.2025 00:51:21
Microsoft SharePoint Server 2007 SP3, 2010 SP1 and SP2, and 2013; Office Web Apps 2010; Excel 2003 SP3, 2007 SP3, 2010 SP1 and SP2, 2013, and 2013 RT; Office for Mac 2011; Excel Viewer; and Office Compatibility Pack SP3 allow remote attackers to exec...
- EPSS 60.25%
- Published 11.09.2013 14:03:47
- Last modified 11.04.2025 00:51:21
Microsoft SharePoint Portal Server 2003 SP3 and SharePoint Server 2007 SP3, 2010 SP1 and SP2, and 2013 do not properly process unassigned workflows, which allows remote attackers to cause a denial of service (W3WP process hang) via a crafted URL, aka...
CVE-2012-2520
- EPSS 28.05%
- Published 09.10.2012 21:55:02
- Last modified 11.04.2025 00:51:21
Cross-site scripting (XSS) vulnerability in Microsoft InfoPath 2007 SP2 and SP3 and 2010 SP1, Communicator 2007 R2, Lync 2010 and 2010 Attendee, SharePoint Server 2007 SP2 and SP3 and 2010 SP1, Groove Server 2010 SP1, Windows SharePoint Services 3.0 ...
CVE-2012-1863
- EPSS 61.9%
- Published 10.07.2012 21:55:06
- Last modified 11.04.2025 00:51:21
Cross-site scripting (XSS) vulnerability in Microsoft Office SharePoint Server 2007 SP2 and SP3 Windows SharePoint Services 3.0 SP2, and SharePoint Foundation 2010 Gold and SP1 allows remote attackers to inject arbitrary web script or HTML via crafte...
CVE-2011-1893
- EPSS 47.88%
- Published 15.09.2011 12:26:48
- Last modified 11.04.2025 00:51:21
Cross-site scripting (XSS) vulnerability in Microsoft Office SharePoint Server 2010, Windows SharePoint Services 2.0 and 3.0 SP2, and SharePoint Foundation 2010 allows remote attackers to inject arbitrary web script or HTML via the URI, aka "SharePoi...