Vulnerabilities > Microsoft > Project > Medium

DATE CVE VULNERABILITY TITLE RISK
2020-06-09 CVE-2020-1322 Information Exposure vulnerability in Microsoft 365 Apps, Office and Project
An information disclosure vulnerability exists when Microsoft Project reads out of bound memory due to an uninitialized variable, aka 'Microsoft Project Information Disclosure Vulnerability'.
network
microsoft CWE-200
4.3
2020-04-15 CVE-2020-0760 Improper Input Validation vulnerability in Microsoft products
A remote code execution vulnerability exists when Microsoft Office improperly loads arbitrary type libraries, aka 'Microsoft Office Remote Code Execution Vulnerability'.
network
microsoft CWE-20
6.8
2019-09-11 CVE-2019-1264 Improper Input Validation vulnerability in Microsoft Office, Office 365 Proplus and Project
A security feature bypass vulnerability exists when Microsoft Office improperly handles input, aka 'Microsoft Office Security Feature Bypass Vulnerability'.
network
microsoft CWE-20
6.8
2002-09-24 CVE-2002-0860 Local File Read vulnerability in Microsoft Office web Components and Project
The LoadText method in the spreadsheet component in Microsoft Office Web Components (OWC) 2000 and 2002 allows remote attackers to read arbitrary files through Internet Explorer via a URL that redirects to the target file.
network
low complexity
microsoft
5.0
1999-01-01 CVE-1999-0384 Unspecified vulnerability in Microsoft products
The Forms 2.0 ActiveX control (included with Visual Basic for Applications 5.0) can be used to read text from a user's clipboard when the user accesses documents with ActiveX content.
local
low complexity
microsoft
4.6