Known vulnerabilities in Microsoft Office for Android - page 2
Vendor:
Microsoft
Software:
Microsoft Office for Android
Software CPE:
cpe:2.3:a:microsoft:microsoft_office_for_android:*:*:*:*:*:*:*:*
Website:
https://www.microsoft.com
Total vulnerabilities:
35
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
Vulnerabilities (35)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU114007 - Heap-based Buffer Overflow CVE-2025-53766 |
CWE-122 | High | 16.0.19127.20000 16.0.19127.20000 | 13.08.2025 |
SB2025081355 |
||
| #VU112695 - Heap-based Buffer Overflow CVE-2025-49697 |
CWE-122 | High | - | 09.07.2025 |
SB20250709110 |
||
| #VU112694 - Out-of-bounds read CVE-2025-49696 |
CWE-125 | High | - | 09.07.2025 |
SB20250709110 |
||
| #VU112693 - Type confusion CVE-2025-49702 |
CWE-843 | High | - | 09.07.2025 |
SB20250709110 |
||
| #VU112691 - Use After Free CVE-2025-49695 |
CWE-416 | High | - | 09.07.2025 |
SB20250709110 |
||
| #VU111019 - Type confusion CVE-2025-47167 |
CWE-843 | High | - | 10.06.2025 |
SB20250610109 |
||
| #VU111018 - Heap-based Buffer Overflow CVE-2025-47162 |
CWE-122 | High | - | 10.06.2025 |
SB20250610109 |
||
| #VU111017 - Use After Free CVE-2025-47164 |
CWE-416 | High | - | 10.06.2025 |
SB20250610109 |
||
| #VU111015 - Improper Restriction of Names for Files and Other Resources CVE-2025-47953 |
CWE-641 | High | - | 10.06.2025 |
SB20250610109 |
||
| #VU109105 - Use After Free CVE-2025-30377 |
CWE-416 | High | - | 13.05.2025 |
SB20250513106 |
||
| #VU109104 - Use After Free CVE-2025-30386 |
CWE-416 | High | - | 13.05.2025 |
SB20250513106 |
||
| #VU109078 - Heap-based Buffer Overflow CVE-2025-30388 |
CWE-122 | High | 16.0.18827.20000 16.0.18827.20000 | 13.05.2025 |
SB2025051390 |
||
| #VU107262 - Use After Free CVE-2025-26687 |
CWE-416 | High | 16.0.18730.20000 16.0.18730.20000 | 09.04.2025 |
SB2025040922 |
||
| #VU81859 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') CVE-2023-36565 |
CWE-362 | Low | 16.0.16827.20138 | 11.10.2023 |
SB2023101117 |
||
| #VU73549 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing) CVE-2023-23391 |
CWE-451 | Medium | - | 14.03.2023 |
SB2023031447 |
Showing elements 21 - 40 out of 35