Vulnerabilities > Microsoft > Office 365 Proplus

DATE CVE VULNERABILITY TITLE RISK
2020-02-11 CVE-2020-0759 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Microsoft Excel and Office 365 Proplus
A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'.
network
microsoft CWE-119
critical
9.3
2020-02-11 CVE-2020-0697 Improper Privilege Management vulnerability in Microsoft Office 365 Proplus
An elevation of privilege vulnerability exists in Microsoft Office OLicenseHeartbeat task, where an attacker who successfully exploited this vulnerability could run this task as SYSTEM.To exploit the vulnerability, an authenticated attacker would need to place a specially crafted file in a specific location, thereby allowing arbitrary file corruption.The security update addresses the vulnerability by correcting how the process validates the log file., aka 'Microsoft Office Tampering Vulnerability'.
local
low complexity
microsoft CWE-269
7.2
2020-02-11 CVE-2020-0696 Unspecified vulnerability in Microsoft Office, Office 365 Proplus and Outlook
A security feature bypass vulnerability exists in Microsoft Outlook software when it improperly handles the parsing of URI formats, aka 'Microsoft Outlook Security Feature Bypass Vulnerability'.
network
microsoft
4.3
2020-01-14 CVE-2020-0653 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Microsoft Office 365 Proplus
A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'.
network
microsoft CWE-119
critical
9.3
2020-01-14 CVE-2020-0652 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Microsoft Excel and Office 365 Proplus
A remote code execution vulnerability exists in Microsoft Office software when the software fails to properly handle objects in memory, aka 'Microsoft Office Memory Corruption Vulnerability'.
network
microsoft CWE-119
6.8
2020-01-14 CVE-2020-0651 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Microsoft Excel and Office 365 Proplus
A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'.
network
microsoft CWE-119
critical
9.3
2020-01-14 CVE-2020-0650 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Microsoft Excel and Office 365 Proplus
A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'.
network
microsoft CWE-119
critical
9.3
2019-12-10 CVE-2019-1464 Information Exposure vulnerability in Microsoft Excel, Office and Office 365 Proplus
An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka 'Microsoft Excel Information Disclosure Vulnerability'.
network
microsoft CWE-200
4.3
2019-12-10 CVE-2019-1463 Information Exposure vulnerability in Microsoft Office and Office 365 Proplus
An information disclosure vulnerability exists in Microsoft Access software when the software fails to properly handle objects in memory, aka 'Microsoft Access Information Disclosure Vulnerability'.
local
low complexity
microsoft CWE-200
2.1
2019-12-10 CVE-2019-1462 Use of Uninitialized Resource vulnerability in Microsoft Office, Office 365 Proplus and Powerpoint
A remote code execution vulnerability exists in Microsoft PowerPoint software when the software fails to properly handle objects in memory, aka 'Microsoft PowerPoint Remote Code Execution Vulnerability'.
network
microsoft CWE-908
critical
9.3