Filtered by vendor Microsoft Subscriptions
Filtered by product Office Subscriptions
Total 953 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2006-0002 1 Microsoft 3 Exchange Server, Office, Outlook 2025-04-03 N/A
Unspecified vulnerability in Microsoft Outlook 2000 through 2003, Exchange 5.0 Server SP2 and 5.5 SP4, Exchange 2000 SP3, and Office allows remote attackers to execute arbitrary code via an e-mail message with a crafted Transport Neutral Encapsulation Format (TNEF) MIME attachment, related to message length validation.
CVE-2006-0009 1 Microsoft 2 Office, Works 2025-04-03 N/A
Buffer overflow in Microsoft Office 2000 SP3, XP SP3, and other versions and packages, allows user-assisted attackers to execute arbitrary code via a routing slip that is longer than specified by the provided length field, as exploited by malware such as TROJ_MDROPPER.BH and Trojan.PPDropper.E in attacks against PowerPoint.
CVE-2006-0028 1 Microsoft 2 Excel, Office 2025-04-03 N/A
Unspecified vulnerability in Microsoft Excel 2000, 2002, and 2003, in Microsoft Office 2000 SP3 and other packages, allows user-assisted attackers to execute arbitrary code via a BIFF parsing format file containing malformed BOOLERR records that lead to memory corruption, probably involving invalid pointers.
CVE-2004-0573 1 Microsoft 5 Frontpage, Office, Publisher and 2 more 2025-04-03 N/A
Buffer overflow in the converter for Microsoft WordPerfect 5.x on Office 2000, Office XP, Office 2003, and Works Suites 2001 through 2004 allows remote attackers to execute arbitrary code via a malicious document or website.
CVE-2006-0008 1 Microsoft 3 Office, Windows 2003 Server, Windows Xp 2025-04-03 N/A
The ShellAbout API call in Korean Input Method Editor (IME) in Korean versions of Microsoft Windows XP SP1 and SP2, Windows Server 2003 up to SP1, and Office 2003, allows local users to gain privileges by launching the "shell about dialog box" and clicking the "End-User License Agreement" link, which executes Notepad with the privileges of the program that displays the about box.
CVE-1999-0384 1 Microsoft 6 Office, Outlook, Project and 3 more 2025-04-03 N/A
The Forms 2.0 ActiveX control (included with Visual Basic for Applications 5.0) can be used to read text from a user's clipboard when the user accesses documents with ActiveX content.
CVE-2004-0846 1 Microsoft 2 Excel, Office 2025-04-03 N/A
Unknown vulnerability in Microsoft Excel 2000, 2002, 2001 for Mac, and v.X for Mac allows remote attackers to execute arbitrary code via a malicious file containing certain parameters that are not properly validated.
CVE-2006-0031 1 Microsoft 1 Office 2025-04-03 N/A
Stack-based buffer overflow in Microsoft Excel 2000, 2002, and 2003, in Microsoft Office 2000 SP3 and other packages, allows user-assisted attackers to execute arbitrary code via an Excel file with a malformed record with a modified length value, which leads to memory corruption.
CVE-2006-0029 1 Microsoft 2 Excel, Office 2025-04-03 N/A
Unspecified vulnerability in Microsoft Excel 2000, 2002, and 2003, in Microsoft Office 2000 SP3 and other packages, allows user-assisted attackers to execute arbitrary code via an Excel file with a malformed description, which leads to memory corruption.
CVE-2006-0033 1 Microsoft 1 Office 2025-04-03 N/A
Unspecified vulnerability in Microsoft Office 2003 SP1 and SP2, Office XP SP3, Office 2000 SP3, and other products, allows user-assisted attackers to execute arbitrary code via a crafted PNG image that triggers memory corruption when it is parsed.
CVE-2002-0152 1 Microsoft 6 Entourage, Excel, Ie and 3 more 2025-04-03 N/A
Buffer overflow in various Microsoft applications for Macintosh allows remote attackers to cause a denial of service (crash) or execute arbitrary code by invoking the file:// directive with a large number of / characters, which affects Internet Explorer 5.1, Outlook Express 5.0 through 5.0.2, Entourage v. X and 2001, PowerPoint v. X, 2001, and 98, and Excel v. X and 2001 for Macintosh.
CVE-2025-21402 1 Microsoft 2 Office, Onenote 2025-04-02 7.8 High
Microsoft Office OneNote Remote Code Execution Vulnerability
CVE-2025-21361 1 Microsoft 2 Office, Outlook 2025-04-02 7.8 High
Microsoft Outlook Remote Code Execution Vulnerability
CVE-2025-21338 1 Microsoft 16 Office, Windows 10 1507, Windows 10 1607 and 13 more 2025-04-02 7.8 High
GDI+ Remote Code Execution Vulnerability
CVE-2025-21354 1 Microsoft 3 365 Apps, Office, Office Online Server 2025-04-02 8.4 High
Microsoft Excel Remote Code Execution Vulnerability
CVE-2022-37963 1 Microsoft 3 365 Apps, Office, Office Long Term Servicing Channel 2025-03-11 7.8 High
Microsoft Office Visio Remote Code Execution Vulnerability
CVE-2022-37962 1 Microsoft 3 365 Apps, Office, Office Long Term Servicing Channel 2025-03-11 7.8 High
Microsoft PowerPoint Remote Code Execution Vulnerability
CVE-2022-38010 1 Microsoft 4 365 Apps, Office, Office Long Term Servicing Channel and 1 more 2025-03-11 7.8 High
Microsoft Office Visio Remote Code Execution Vulnerability
CVE-2023-36765 1 Microsoft 1 Office 2025-02-28 7.8 High
Microsoft Office Elevation of Privilege Vulnerability
CVE-2023-33150 1 Microsoft 3 365 Apps, Office, Word 2025-02-28 9.6 Critical
Microsoft Office Security Feature Bypass Vulnerability