Vulnerabilities > Microsoft > Office > 2013

DATE CVE VULNERABILITY TITLE RISK
2019-12-10 CVE-2019-1464 Information Exposure vulnerability in Microsoft Excel, Office and Office 365 Proplus
An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka 'Microsoft Excel Information Disclosure Vulnerability'.
local
low complexity
microsoft CWE-200
5.5
2019-12-10 CVE-2019-1463 Information Exposure vulnerability in Microsoft Office and Office 365 Proplus
An information disclosure vulnerability exists in Microsoft Access software when the software fails to properly handle objects in memory, aka 'Microsoft Access Information Disclosure Vulnerability'.
local
low complexity
microsoft CWE-200
5.5
2019-12-10 CVE-2019-1400 Information Exposure vulnerability in Microsoft Office and Office 365 Proplus
An information disclosure vulnerability exists in Microsoft Access software when the software fails to properly handle objects in memory, aka 'Microsoft Access Information Disclosure Vulnerability'.
local
low complexity
microsoft CWE-200
5.5
2019-11-12 CVE-2019-1446 Information Exposure vulnerability in Microsoft products
An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka 'Microsoft Excel Information Disclosure Vulnerability'.
local
low complexity
microsoft CWE-200
5.5
2019-11-12 CVE-2019-1402 Information Exposure vulnerability in Microsoft Office and Office 365
An information disclosure vulnerability exists in Microsoft Office software when the software fails to properly handle objects in memory, aka 'Microsoft Office Information Disclosure Vulnerability'.
local
low complexity
microsoft CWE-200
5.5
2019-10-10 CVE-2019-1331 Unspecified vulnerability in Microsoft products
A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'.
network
low complexity
microsoft
8.8
2019-09-11 CVE-2019-1264 Improper Input Validation vulnerability in Microsoft Office, Office 365 Proplus and Project
A security feature bypass vulnerability exists when Microsoft Office improperly handles input, aka 'Microsoft Office Security Feature Bypass Vulnerability'.
local
low complexity
microsoft CWE-20
7.8
2019-09-11 CVE-2019-1246 Unspecified vulnerability in Microsoft products
A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, aka 'Jet Database Engine Remote Code Execution Vulnerability'.
local
low complexity
microsoft
7.8
2019-07-15 CVE-2019-1111 Unspecified vulnerability in Microsoft Excel, Office and Office 365 Proplus
A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'.
network
low complexity
microsoft
8.8
2019-07-15 CVE-2019-1109 Improper Input Validation vulnerability in Microsoft Office and Office 365
A spoofing vulnerability exists when Microsoft Office Javascript does not check the validity of the web page making a request to Office documents.An attacker who successfully exploited this vulnerability could read or write information in Office documents.The security update addresses the vulnerability by correcting the way that Microsoft Office Javascript verifies trusted web pages., aka 'Microsoft Office Spoofing Vulnerability'.
network
low complexity
microsoft CWE-20
critical
9.1