Known vulnerabilities in Microsoft Office 2019 - page 16

Vendor: Microsoft
Version: 2019
Software CPE: cpe:2.3:a:microsoft:microsoft_office:*:*:*:*:*:*:*:*
Total vulnerabilities: 517
Public exploits: 22
Known exploited (KEV): 13
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Microsoft Office version 2019 Microsoft Office 2019 is affected by 517 vulnerabilities: 8 critical, 375 high, 83 medium, 51 low Critical High Medium Low

Vulnerabilities (517)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU61145 - Untrusted Pointer Dereference
CVE-2022-24509
CWE-822 High
No
No
- 08.03.2022 SB2022030826
#VU60440 - Improper Control of Generation of Code ('Code Injection')
CVE-2022-21988
CWE-94 High
No
No
- 08.02.2022 SB2022020849
#VU60420 - Exposure of sensitive information to an unauthorized actor
CVE-2022-22716
CWE-200 Low
No
No
- 08.02.2022 SB2022020841
#VU60408 - Exposure of sensitive information to an unauthorized actor
CVE-2022-23252
CWE-200 Low
No
No
- 08.02.2022 SB2022020836
#VU60393 - Improper Control of Generation of Code ('Code Injection')
CVE-2022-22003
CWE-94 High
No
No
- 08.02.2022 SB2022020831
#VU59477 - Memory corruption
CVE-2022-21841
CWE-119 High
No
No
- 11.01.2022 SB2022011160
#VU59476 - Improper Control of Generation of Code ('Code Injection')
CVE-2022-21840
CWE-94 High
No
No
- 11.01.2022 SB2022011159
#VU58949 - Exposure of sensitive information to an unauthorized actor
CVE-2021-42295
CWE-200 Low
No
No
- 14.12.2021 SB2021121470
#VU58948 - Permissions, Privileges, and Access Controls
CVE-2021-42293
CWE-264 Medium
No
No
- 14.12.2021 SB2021121469
#VU58926 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2021-43255
CWE-451 Low
No
No
- 14.12.2021 SB2021121454
#VU58924 - Integer overflow
CVE-2021-43875
CWE-190 High
No
No
- 14.12.2021 SB2021121452
#VU58907 - Improper Control of Generation of Code ('Code Injection')
CVE-2021-43256
CWE-94 High
No
No
- 14.12.2021 SB2021121447
#VU58070 - Improper Control of Generation of Code ('Code Injection')
CVE-2021-40442
CWE-94 High
No
No
- 09.11.2021 SB2021110941
#VU58064 - Improper Control of Generation of Code ('Code Injection')
CVE-2021-41368
CWE-94 High
No
No
- 09.11.2021 SB2021110936
#VU58058 - Improper input validation
CVE-2021-42292
CWE-20 Critical
No
Exploited
- 09.11.2021 SB2021110931
#VU57300 - Exposure of sensitive information to an unauthorized actor
CVE-2021-40454
CWE-200 Low
No
No
- 12.10.2021 SB2021101241
SB2022111615
#VU57270 - Improper Validation of Array Index
CVE-2021-40480
CWE-129 High
No
No
- 12.10.2021 SB2021101219
#VU57269 - Use After Free
CVE-2021-40481
CWE-416 High
No
No
- 12.10.2021 SB2021101219
#VU57267 - Exposure of sensitive information to an unauthorized actor
CVE-2021-40472
CWE-200 Low
No
No
- 12.10.2021 SB2021101217
#VU57262 - Improper Control of Generation of Code ('Code Injection')
CVE-2021-40485
CWE-94 High
No
No
- 12.10.2021 SB2021101217


Showing elements 301 - 320 out of 517