Vulnerabilities > Microsoft > Office 365 Proplus > Medium

DATE CVE VULNERABILITY TITLE RISK
2020-04-15 CVE-2020-0760 Improper Input Validation vulnerability in Microsoft products
A remote code execution vulnerability exists when Microsoft Office improperly loads arbitrary type libraries, aka 'Microsoft Office Remote Code Execution Vulnerability'.
network
microsoft CWE-20
6.8
2020-03-12 CVE-2020-0850 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Microsoft products
A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory, aka 'Microsoft Word Remote Code Execution Vulnerability'.
network
microsoft CWE-119
6.8
2020-02-11 CVE-2020-0696 Unspecified vulnerability in Microsoft Office, Office 365 Proplus and Outlook
A security feature bypass vulnerability exists in Microsoft Outlook software when it improperly handles the parsing of URI formats, aka 'Microsoft Outlook Security Feature Bypass Vulnerability'.
network
microsoft
4.3
2020-01-14 CVE-2020-0652 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Microsoft Excel and Office 365 Proplus
A remote code execution vulnerability exists in Microsoft Office software when the software fails to properly handle objects in memory, aka 'Microsoft Office Memory Corruption Vulnerability'.
network
microsoft CWE-119
6.8
2019-12-10 CVE-2019-1464 Information Exposure vulnerability in Microsoft Excel, Office and Office 365 Proplus
An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka 'Microsoft Excel Information Disclosure Vulnerability'.
network
microsoft CWE-200
4.3
2019-09-11 CVE-2019-1264 Improper Input Validation vulnerability in Microsoft Office, Office 365 Proplus and Project
A security feature bypass vulnerability exists when Microsoft Office improperly handles input, aka 'Microsoft Office Security Feature Bypass Vulnerability'.
network
microsoft CWE-20
6.8
2019-09-11 CVE-2019-1263 Information Exposure vulnerability in Microsoft Excel, Office and Office 365 Proplus
An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka 'Microsoft Excel Information Disclosure Vulnerability'.
network
microsoft CWE-200
4.3
2019-08-14 CVE-2019-1204 Improper Input Validation vulnerability in Microsoft Office, Office 365 Proplus and Outlook
An elevation of privilege vulnerability exists when Microsoft Outlook initiates processing of incoming messages without sufficient validation of the formatting of the messages.
network
low complexity
microsoft CWE-20
4.3
2019-07-15 CVE-2019-1112 Information Exposure vulnerability in Microsoft Office and Office 365 Proplus
An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka 'Microsoft Excel Information Disclosure Vulnerability'.
network
microsoft CWE-200
4.3
2019-07-15 CVE-2019-1084 Information Exposure vulnerability in Microsoft products
An information disclosure vulnerability exists when Exchange allows creation of entities with Display Names having non-printable characters.
network
low complexity
microsoft CWE-200
4.0