EN

CVE Tracker

56.560 CVE

CVE-2018-8158
Alta 7.8

A remote code execution vulnerability exists in Microsoft Office software when the software fails to properly handle objects in memory, aka "Microsoft Office Remote Code Execution Vulnerability." This affects Microsoft Office. This CVE ID is unique from CVE-20…

microsoft office
0.24EPSS
CVE-2018-8157
Alta 7.8

A remote code execution vulnerability exists in Microsoft Office software when the software fails to properly handle objects in memory, aka "Microsoft Office Remote Code Execution Vulnerability." This affects Microsoft Office. This CVE ID is unique from CVE-20…

microsoft office
0.24EPSS
CVE-2018-8148
Alta 7.8

A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka "Microsoft Excel Remote Code Execution Vulnerability." This affects Microsoft Office, Microsoft Excel. This CVE ID is uni…

microsoft excel · microsoft office · microsoft office_compatibility_pack · microsoft office_for_mac
0.24EPSS
CVE-2018-8147
Alta 7.8

A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka "Microsoft Excel Remote Code Execution Vulnerability." This affects Microsoft Office, Microsoft Excel. This CVE ID is uni…

microsoft excel · microsoft office · microsoft office_compatibility_pack · microsoft office_for_mac
0.24EPSS
CVE-2009-1216
Alta 10.0

Multiple unspecified vulnerabilities in (1) unlzh.c and (2) unpack.c in the gzip libraries in Microsoft Windows Server 2008, Windows Services for UNIX 3.0 and 3.5, and the Subsystem for UNIX-based Applications (SUA); as used in gunzip, gzip, pack, pcat, and un…

microsoft subsystem_for_unix-based_applications · microsoft windows_server_2008 · microsoft windows_services_for_unix · microsoft windows_vista
0.24EPSS
CVE-2004-0205
Alta 7.2

Buffer overflow in Microsoft Internet Information Server (IIS) 4.0 allows local users to execute arbitrary code via the redirect function.

avaya definity_one_media_server · avaya ip600_media_servers · avaya modular_messaging_message_storage_server · avaya s8100 · e altri 1
0.24EPSS
CVE-2014-1800
Alta 9.3

Microsoft Internet Explorer 8 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability."

microsoft internet_explorer
0.24EPSS
CVE-2014-1797
Alta 9.3

Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-17…

microsoft internet_explorer
0.24EPSS
CVE-2025-21377
Media 6.5

NTLM Hash Disclosure Spoofing Vulnerability

microsoft windows_10_1507 · microsoft windows_10_1607 · microsoft windows_10_1809 · microsoft windows_10_21h2 · e altri 11
0.24EPSS
CVE-2025-21385
Alta 8.8

A Server-Side Request Forgery (SSRF) vulnerability in Microsoft Purview allows an authorized attacker to disclose information over a network.

microsoft purview
0.24EPSS
CVE-2020-11989
Critica 9.8

Apache Shiro before 1.5.3, when using Apache Shiro with Spring dynamic controllers, a specially crafted request may cause an authentication bypass.

apache shiro
0.24EPSS
CVE-1999-0702
Alta 10.0

Internet Explorer 5.0 and 5.01 allows remote attackers to modify or execute files via the Import/Export Favorites feature, aka the "ImportExportFavorites" vulnerability.

microsoft internet_explorer
0.24EPSS
CVE-2012-0183
Alta 9.3

Microsoft Word 2003 SP3 and 2007 SP2 and SP3, Office 2008 and 2011 for Mac, and Office Compatibility Pack SP2 and SP3 allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via crafted RTF data, aka "RTF Mismatch Vuln…

microsoft office · microsoft office_compatibility_pack · microsoft word
0.24EPSS
CVE-2006-0015
Media 6.8

Cross-site scripting (XSS) vulnerability in _vti_bin/_vti_adm/fpadmdll.dll in Microsoft FrontPage Server Extensions 2002 and SharePoint Team Services allows remote attackers to inject arbitrary web script or HTML, then leverage the attack to execute arbitrary …

microsoft frontpage_server_extensions · microsoft sharepoint_team_services
0.24EPSS
CVE-2018-0807
Alta 8.8

Equation Editor in Microsoft Office 2003, Microsoft Office 2007, Microsoft Office 2010, Microsoft Office 2013, and Microsoft Office 2016 allows a remote code execution vulnerability due to the way objects are handled in memory, aka "Microsoft Word Remote Code …

microsoft office · microsoft office_compatibility_pack · microsoft word
0.24EPSS
CVE-2018-0805
Alta 8.8

Equation Editor in Microsoft Office 2003, Microsoft Office 2007, Microsoft Office 2010, Microsoft Office 2013, and Microsoft Office 2016 allows a remote code execution vulnerability due to the way objects are handled in memory, aka "Microsoft Word Remote Code …

microsoft office · microsoft office_compatibility_pack · microsoft word
0.24EPSS
CVE-2018-0804
Alta 8.8

Equation Editor in Microsoft Office 2003, Microsoft Office 2007, Microsoft Office 2010, Microsoft Office 2013, and Microsoft Office 2016 allows a remote code execution vulnerability due to the way objects are handled in memory, aka "Microsoft Word Remote Code …

microsoft office · microsoft office_compatibility_pack · microsoft word
0.24EPSS
CVE-2018-0801
Alta 8.8

Equation Editor in Microsoft Office 2007, Microsoft Office 2010, Microsoft Office 2013, and Microsoft Office 2016 allows a remote code execution vulnerability due to the way objects are handled in memory, aka "Microsoft Office Remote Code Execution Vulnerabili…

microsoft office · microsoft office_compatibility_pack · microsoft word
0.24EPSS
CVE-2018-17686
Media 6.5

This vulnerability allows remote attackers to disclose sensitive information on vulnerable installations of Foxit Reader 9.2.0.9297. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious f…

foxitsoftware phantompdf · foxitsoftware reader
0.24EPSS
CVE-2008-4020
Media 4.3

Cross-site scripting (XSS) vulnerability in Microsoft Office XP SP3 allows remote attackers to inject arbitrary web script or HTML via a document that contains a "Content-Disposition: attachment" header and is accessed through a cdo: URL, which renders the con…

microsoft office
0.24EPSS
CVE-2025-60021
Critica 9.8

Remote command injection vulnerability in heap profiler builtin service in Apache bRPC ((all versions < 1.15.0)) on all platforms allows attacker to inject remote command. Root Cause: The bRPC heap profiler built-in service (/pprof/heap) does not validate t…

apache brpc
0.24EPSS
CVE-2016-3396
Alta 7.8

Graphics Device Interface (aka GDI or GDI+) in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; Windows 10 Gold, 1511, and 1607; Office 2007 SP3; Office 2010 SP2; Word…

microsoft live_meeting · microsoft lync · microsoft office · microsoft skype_for_business · e altri 8
0.24EPSS
CVE-2008-3892
Alta 10.0

Buffer overflow in a certain ActiveX control in the COM API in VMware Workstation 5.5.x before 5.5.8 build 108000, VMware Workstation 6.0.x before 6.0.5 build 109488, VMware Player 1.x before 1.0.8 build 108000, VMware Player 2.x before 2.0.5 build 109488, VMw…

vmware ace · vmware player · vmware server · vmware workstation
0.24EPSS
CVE-2016-0021
Alta 7.8

Microsoft InfoPath 2007 SP3, 2010 SP2, and 2013 SP1 allows remote attackers to execute arbitrary code via a crafted Office document, aka "Microsoft Office Memory Corruption Vulnerability."

microsoft infopath
0.24EPSS
CVE-2010-3214
Alta 9.3

Stack-based buffer overflow in Microsoft Word 2002 SP3, 2003 SP3, 2007 SP2, and 2010; Office 2004 and 2008 for Mac; Open XML File Format Converter for Mac; Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats SP2; Word Viewer; Office Web…

microsoft office · microsoft office_compatibility_pack · microsoft office_web_apps · microsoft open_xml_file_format_converter · e altri 3
0.24EPSS