Show filters
1,839 Total Results
Displaying 11-20 of 1,839
Sort by:
Attacker Value
Unknown

CVE-2021-42292

Disclosure Date: November 10, 2021 (last updated February 23, 2025)
Microsoft Excel Security Feature Bypass Vulnerability
3
Attacker Value
Low

CVE-2020-12695 "CallStranger"

Disclosure Date: June 08, 2020 (last updated February 21, 2025)
The Open Connectivity Foundation UPnP specification before 2020-04-17 does not forbid the acceptance of a subscription request with a delivery URL on a different network segment than the fully qualified event-subscription URL, aka the CallStranger issue.
Attacker Value
Unknown

CVE-2020-11022

Disclosure Date: April 29, 2020 (last updated February 21, 2025)
In jQuery versions greater than or equal to 1.2 and before 3.5.0, passing HTML from untrusted sources - even after sanitizing it - to one of jQuery's DOM manipulation methods (i.e. .html(), .append(), and others) may execute untrusted code. This problem is patched in jQuery 3.5.0.
Attacker Value
Very High

CVE-2017-11882

Disclosure Date: November 15, 2017 (last updated November 26, 2024)
Microsoft Office 2007 Service Pack 3, Microsoft Office 2010 Service Pack 2, Microsoft Office 2013 Service Pack 1, and Microsoft Office 2016 allow an attacker to run arbitrary code in the context of the current user by failing to properly handle objects in memory, aka "Microsoft Office Memory Corruption Vulnerability". This CVE ID is unique from CVE-2017-11884.
Attacker Value
Unknown

CVE-2024-30103

Disclosure Date: June 11, 2024 (last updated January 12, 2025)
Microsoft Outlook Remote Code Execution Vulnerability
Attacker Value
High

CVE-2023-35636

Disclosure Date: December 12, 2023 (last updated January 12, 2025)
Microsoft Outlook Information Disclosure Vulnerability
Attacker Value
High

CVE-2023-33148

Disclosure Date: July 11, 2023 (last updated January 11, 2025)
Microsoft Office Elevation of Privilege Vulnerability
Attacker Value
High

CVE-2023-33131

Disclosure Date: June 14, 2023 (last updated January 11, 2025)
Microsoft Outlook Remote Code Execution Vulnerability
Attacker Value
High

CVE-2023-28285

Disclosure Date: April 11, 2023 (last updated January 11, 2025)
Microsoft Office Remote Code Execution Vulnerability
Attacker Value
High

CVE-2023-23398

Disclosure Date: March 14, 2023 (last updated May 29, 2024)
Microsoft Excel Spoofing Vulnerability