Vulnerabilities > Microsoft > Office 365

DATE CVE VULNERABILITY TITLE RISK
2019-11-12 CVE-2019-1446 Information Exposure vulnerability in Microsoft products
An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka 'Microsoft Excel Information Disclosure Vulnerability'.
network
microsoft CWE-200
4.3
2019-11-12 CVE-2019-1402 Information Exposure vulnerability in Microsoft Office and Office 365
An information disclosure vulnerability exists in Microsoft Office software when the software fails to properly handle objects in memory, aka 'Microsoft Office Information Disclosure Vulnerability'.
local
low complexity
microsoft CWE-200
2.1
2019-07-15 CVE-2019-1109 Improper Input Validation vulnerability in Microsoft Office and Office 365
A spoofing vulnerability exists when Microsoft Office Javascript does not check the validity of the web page making a request to Office documents.An attacker who successfully exploited this vulnerability could read or write information in Office documents.The security update addresses the vulnerability by correcting the way that Microsoft Office Javascript verifies trusted web pages., aka 'Microsoft Office Spoofing Vulnerability'.
network
low complexity
microsoft CWE-20
6.4
2019-05-16 CVE-2019-0945 Data Processing Errors vulnerability in Microsoft Office and Office 365
A remote code execution vulnerability exists when the Microsoft Office Access Connectivity Engine improperly handles objects in memory, aka 'Microsoft Office Access Connectivity Engine Remote Code Execution Vulnerability'.
network
microsoft CWE-19
critical
9.3
2018-12-12 CVE-2018-8597 Unspecified vulnerability in Microsoft products
A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka "Microsoft Excel Remote Code Execution Vulnerability." This affects Office 365 ProPlus, Microsoft Office, Microsoft Excel.
network
microsoft
critical
9.3