Known vulnerabilities in Word Automation Services on Microsoft SharePoint Server

Vendor: Microsoft
Software CPE: cpe:2.3:a:microsoft:word_automation_services_on_microsoft_sharepoint_server:*:*:*:*:*:*:*:*
Total vulnerabilities: 15
Public exploits: 1
Known exploited (KEV): 1
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Word Automation Services on Microsoft SharePoint Server Word Automation Services on Microsoft SharePoint Server is affected by 15 known vulnerabilities: 1 critical, 10 high, 1 medium, 3 low Critical High Medium Low

Vulnerabilities (15)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU18503 - Memory corruption
CVE-2017-8509
CWE-119 High
No
No
- 16.05.2019 SB2017061339
#VU16882 - Exposure of sensitive information to an unauthorized actor
CVE-2019-0561
CWE-200 Low
No
No
- 08.01.2019 SB2019010825
#VU16881 - Memory corruption
CVE-2019-0585
CWE-119 High
No
No
- 08.01.2019 SB2019010825
#VU14398 - Out-of-bounds read
CVE-2018-8378
CWE-125 Low
No
No
- 14.08.2018 SB2018081429
#VU12477 - Memory corruption
CVE-2018-8161
CWE-119 High
No
No
- 08.05.2018 SB2018050816
#VU12492 - Exposure of sensitive information to an unauthorized actor
CVE-2018-8160
CWE-200 High
No
No
- 08.05.2018 SB2018050820
#VU11708 - Memory corruption
CVE-2018-1028
CWE-119 High
No
No
- 10.04.2018 SB2018041024
#VU6452 - Memory corruption
CVE-2017-0254
CWE-119 High
No
No
- 09.05.2017 SB2017050906
#VU6025 - Out-of-bounds read
CVE-2017-0105
CWE-125 Low
No
No
- 14.03.2017 SB2017031422
SB2017031448
#VU6018 - Memory corruption
CVE-2017-0030
CWE-119 High
No
No
- 14.03.2017 SB2017031422
SB2017031491
#VU5288 - Memory corruption
CVE-2015-2468
CWE-119 High
Available
No
- 24.01.2017 SB2015081102
#VU964 - Memory corruption
CVE-2016-7193
CWE-119 Critical
No
Exploited
- 11.10.2016 SB2016101105
SB2016101125
#VU135 - Memory corruption
CVE-2016-3282
CWE-119 High
No
No
- 14.07.2016 SB2016071306
SB2016071206
SB2016071228
#VU134 - Memory corruption
CVE-2016-3281
CWE-119 High
No
No
- 14.07.2016 SB2016071306
SB2016071205
SB2016071228
#VU132 - Improper Locking
CVE-2016-3279
CWE-264 Medium
No
No
- 14.07.2016 SB2016071306
SB2016071203
SB2016071228