Show filters
183 Total Results
Displaying 71-80 of 183
Sort by:
Attacker Value
Unknown
CVE-2017-8508
Disclosure Date: June 15, 2017 (last updated November 26, 2024)
A security feature bypass vulnerability exists in Microsoft Office software when it improperly handles the parsing of file formats, aka "Microsoft Office Security Feature Bypass Vulnerability".
0
Attacker Value
Unknown
CVE-2017-8507
Disclosure Date: June 15, 2017 (last updated November 26, 2024)
A remote code execution vulnerability exists in the way Microsoft Office software parses specially crafted email messages, aka "Microsoft Office Memory Corruption Vulnerability".
0
Attacker Value
Unknown
CVE-2017-0204
Disclosure Date: April 12, 2017 (last updated November 26, 2024)
Microsoft Outlook 2007 SP3, Microsoft Outlook 2010 SP2, Microsoft Outlook 2013 SP1, and Microsoft Outlook 2016 allow remote attackers to bypass the Office Protected View via a specially crafted document, aka "Microsoft Office Security Feature Bypass Vulnerability."
0
Attacker Value
Unknown
CVE-2017-0207
Disclosure Date: April 12, 2017 (last updated November 26, 2024)
Microsoft Outlook for Mac 2011 allows remote attackers to spoof web content via a crafted email with specific HTML tags, aka "Microsoft Browser Spoofing Vulnerability."
0
Attacker Value
Unknown
CVE-2017-0106
Disclosure Date: April 12, 2017 (last updated November 26, 2024)
Microsoft Excel 2007 SP3, Microsoft Outlook 2010 SP2, Microsoft Outlook 2013 SP1, and Microsoft Outlook 2016 allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted document, aka "Microsoft Office Memory Corruption Vulnerability."
0
Attacker Value
Unknown
CVE-2016-3366
Disclosure Date: September 14, 2016 (last updated November 25, 2024)
Microsoft Outlook 2007 SP3, Outlook 2010 SP2, Outlook 2013 SP1, Outlook 2013 RT SP1, Outlook 2016, and Outlook 2016 for Mac do not properly implement RFC 2046, which allows remote attackers to bypass virus or spam detection via crafted MIME data in an e-mail attachment, aka "Microsoft Office Spoofing Vulnerability."
0
Attacker Value
Unknown
CVE-2016-3278
Disclosure Date: July 13, 2016 (last updated November 25, 2024)
Microsoft Outlook 2010 SP2, 2013 SP1, 2013 RT SP1, and 2016 allows remote attackers to execute arbitrary code via a crafted Office document, aka "Microsoft Office Memory Corruption Vulnerability."
0
Attacker Value
Unknown
CVE-2016-0028
Disclosure Date: June 16, 2016 (last updated November 25, 2024)
Outlook Web Access (OWA) in Microsoft Exchange Server 2013 SP1, Cumulative Update 11, and Cumulative Update 12 and 2016 Gold and Cumulative Update 1 does not properly restrict loading of IMG elements, which makes it easier for remote attackers to track users via a crafted HTML e-mail message, aka "Microsoft Exchange Information Disclosure Vulnerability."
0
Attacker Value
Unknown
CVE-2014-5359
Disclosure Date: December 16, 2014 (last updated October 05, 2023)
Directory traversal vulnerability in SafeNet Authentication Service (SAS) Outlook Web Access Agent (formerly CRYPTOCard) before 1.03.30109 allows remote attackers to read arbitrary files via a .. (dot dot) in the GetFile parameter to owa/owa.
0
Attacker Value
Unknown
CVE-2014-5239
Disclosure Date: August 14, 2014 (last updated October 05, 2023)
The Microsoft Outlook.com application before 7.8.2.12.49.7090 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
0