Known vulnerabilities in Microsoft Office - page 24

Vendor: Microsoft
Software CPE: cpe:2.3:a:microsoft:microsoft_office:*:*:*:*:*:*:*:*
Total vulnerabilities: 973
Public exploits: 65
Known exploited (KEV): 52
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Microsoft Office Microsoft Office is affected by 973 known vulnerabilities: 53 critical, 676 high, 146 medium, 98 low Critical High Medium Low

Vulnerabilities (973)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU68154 - Exposure of sensitive information to an unauthorized actor
CVE-2022-41043
CWE-200 Low
No
No
- 11.10.2022 SB2022101155
#VU68152 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2022-38001
CWE-451 Medium
No
No
- 11.10.2022 SB2022101155
#VU67265 - Use After Free
CVE-2022-37962
CWE-416 High
No
No
- 13.09.2022 SB2022091366
#VU67264 - Memory corruption
CVE-2022-37963
CWE-119 High
No
No
- 13.09.2022 SB2022091365
#VU67263 - Improper input validation
CVE-2022-38010
CWE-20 High
No
No
- 13.09.2022 SB2022091365
#VU66345 - Security Features
CVE-2022-33631
CWE-254 Medium
No
No
- 10.08.2022 SB2022081010
#VU66320 - Heap-based Buffer Overflow
CVE-2022-35742
CWE-122 Medium
No
No
- 09.08.2022 SB2022080954
#VU66308 - Improper input validation
CVE-2022-34717
CWE-20 High
No
No
- 09.08.2022 SB2022080939
#VU65217 - Security Features
CVE-2022-33632
CWE-254 Medium
No
No
- 12.07.2022 SB2022071262
#VU62991 - Security Features
CVE-2022-29107
CWE-254 Medium
No
No
- 11.05.2022 SB2022051104
#VU62985 - Improper input validation
CVE-2022-29109
CWE-20 High
No
No
- 10.05.2022 SB2022051041
#VU62096 - Improper Control of Generation of Code ('Code Injection')
CVE-2022-24473
CWE-94 High
No
No
- 12.04.2022 SB2022041224
#VU62095 - Use After Free
CVE-2022-26901
CWE-416 High
No
No
- 12.04.2022 SB2022041224
#VU61180 - Improper input validation
CVE-2022-24511
CWE-20 Medium
No
No
- 08.03.2022 SB2022030852
#VU61179 - Security Features
CVE-2022-24462
CWE-254 Medium
No
No
- 08.03.2022 SB2022030851
#VU61145 - Untrusted Pointer Dereference
CVE-2022-24509
CWE-822 High
No
No
- 08.03.2022 SB2022030826
#VU61144 - Out-of-bounds write
CVE-2022-24461
CWE-787 High
No
No
- 08.03.2022 SB2022030826
#VU61143 - Type confusion
CVE-2022-24510
CWE-843 High
No
No
- 08.03.2022 SB2022030826
#VU60440 - Improper Control of Generation of Code ('Code Injection')
CVE-2022-21988
CWE-94 High
No
No
- 08.02.2022 SB2022020849
#VU60420 - Exposure of sensitive information to an unauthorized actor
CVE-2022-22716
CWE-200 Low
No
No
- 08.02.2022 SB2022020841


Showing elements 461 - 480 out of 973