Vulnerabilities > Microsoft > 365 Apps > High

DATE CVE VULNERABILITY TITLE RISK
2021-12-15 CVE-2021-43875 Unspecified vulnerability in Microsoft 365 Apps and Office
Microsoft Office Graphics Remote Code Execution Vulnerability
local
low complexity
microsoft
7.8
2020-08-17 CVE-2020-1581 Unspecified vulnerability in Microsoft 365 Apps and Office
An elevation of privilege vulnerability exists in the way that Microsoft Office Click-to-Run (C2R) components handle objects in memory.
local
low complexity
microsoft
7.8
2020-08-17 CVE-2020-1563 Unspecified vulnerability in Microsoft 365 Apps and Office
A remote code execution vulnerability exists in Microsoft Office software when the software fails to properly handle objects in memory.
local
low complexity
microsoft
7.8
2020-08-17 CVE-2020-1498 Unspecified vulnerability in Microsoft 365 Apps, Excel and Office
A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory.
network
low complexity
microsoft
8.8
2020-08-17 CVE-2020-1496 Unspecified vulnerability in Microsoft 365 Apps, Excel and Office
A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory.
network
low complexity
microsoft
8.8
2020-08-17 CVE-2020-1495 Unspecified vulnerability in Microsoft products
A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory.
network
low complexity
microsoft
8.8
2020-08-17 CVE-2020-1494 Unspecified vulnerability in Microsoft 365 Apps, Excel and Office
A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory.
network
low complexity
microsoft
8.8
2020-07-14 CVE-2020-1458 Untrusted Search Path vulnerability in Microsoft 365 Apps
A remote code execution vulnerability exists when Microsoft Office improperly validates input before loading dynamic link library (DLL) files, aka 'Microsoft Office Remote Code Execution Vulnerability'.
local
low complexity
microsoft CWE-426
7.8
2020-07-14 CVE-2020-1449 Origin Validation Error vulnerability in Microsoft 365 Apps, Office and Project 2016
A remote code execution vulnerability exists in Microsoft Project software when the software fails to check the source markup of a file, aka 'Microsoft Project Remote Code Execution Vulnerability'.
local
low complexity
microsoft CWE-346
7.8
2020-07-14 CVE-2020-1447 Unspecified vulnerability in Microsoft products
A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory, aka 'Microsoft Word Remote Code Execution Vulnerability'.
network
low complexity
microsoft
8.8