Vulnerabilities > Microsoft > Powerpoint > High

DATE CVE VULNERABILITY TITLE RISK
2024-08-13 CVE-2024-38171 Unspecified vulnerability in Microsoft products
Microsoft PowerPoint Remote Code Execution Vulnerability
local
low complexity
microsoft
7.8
2024-02-13 CVE-2024-20673 Unspecified vulnerability in Microsoft products
Microsoft Office Remote Code Execution Vulnerability
local
low complexity
microsoft
7.8
2022-04-15 CVE-2022-26903 Unspecified vulnerability in Microsoft products
Windows Graphics Component Remote Code Execution Vulnerability
local
low complexity
microsoft
7.8
2021-03-11 CVE-2021-27056 Unspecified vulnerability in Microsoft 365 Apps, Office and Powerpoint
Microsoft PowerPoint Remote Code Execution Vulnerability
local
low complexity
microsoft
7.8
2020-12-10 CVE-2020-17124 Unspecified vulnerability in Microsoft 365 Apps, Office and Powerpoint
Microsoft PowerPoint Remote Code Execution Vulnerability
local
low complexity
microsoft
7.8
2015-07-14 CVE-2015-2424 Out-of-bounds Write vulnerability in Microsoft products
Microsoft PowerPoint 2007 SP3, Word 2007 SP3, PowerPoint 2010 SP2, Word 2010 SP2, PowerPoint 2013 SP1, Word 2013 SP1, and PowerPoint 2013 RT SP1 allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted Office document, aka "Microsoft Office Memory Corruption Vulnerability."
network
low complexity
microsoft CWE-787
8.8
2010-11-10 CVE-2010-2572 Classic Buffer Overflow vulnerability in Microsoft Powerpoint 2002/2003
Buffer overflow in Microsoft PowerPoint 2002 SP3 and 2003 SP3 allows remote attackers to execute arbitrary code via a crafted PowerPoint 95 document, aka "PowerPoint Parsing Buffer Overflow Vulnerability."
local
low complexity
microsoft CWE-120
7.8
2008-07-07 CVE-2008-3068 Remote Information Disclosure vulnerability in Microsoft Crypto API X.509 Certificate Validation
Microsoft Crypto API 5.131.2600.2180 through 6.0, as used in Outlook, Windows Live Mail, and Office 2007, performs Certificate Revocation List (CRL) checks by using an arbitrary URL from a certificate embedded in a (1) S/MIME e-mail message or (2) signed document, which allows remote attackers to obtain reading times and IP addresses of recipients, and port-scan results, via a crafted certificate with an Authority Information Access (AIA) extension.
network
low complexity
microsoft
7.5
2006-08-09 CVE-2006-3449 Remote Code Execution vulnerability in Microsoft Powerpoint
Unspecified vulnerability in Microsoft PowerPoint 2000 through 2003, possibly a buffer overflow, allows user-assisted remote attackers to execute arbitrary commands via a malformed record in the BIFF file format used in a PPT file, a different issue than CVE-2006-1540, aka "Microsoft PowerPoint Malformed Record Vulnerability."
network
low complexity
microsoft
7.5
2006-07-18 CVE-2006-3660 Multiple Unspecified vulnerability in Microsoft Powerpoint 2003
Unspecified vulnerability in Microsoft PowerPoint 2003 has unknown impact and user-assisted attack vectors related to powerpnt.exe.
network
high complexity
microsoft
7.6