This CPE summary could be partial or incomplete. Please contact us for a detailed listing.

Summary

Detail
Vendor Microsoft First view 2015-05-13
Product Office Last view 2021-01-12
Version 2013 Type Application
Update sp1  
Edition *  
Language *  
Sofware Edition rt  
Target Software *  
Target Hardware *  
Other *  
 
CPE Product cpe:2.3:a:microsoft:office

Activity : Overall

Related : CVE

This CPE have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
  Date Alert Description
7.8 2021-01-12 CVE-2021-1711

Microsoft Office Remote Code Execution Vulnerability

7.8 2020-11-11 CVE-2020-17064

Microsoft Excel Remote Code Execution Vulnerability This CVE ID is unique from CVE-2020-17019, CVE-2020-17065, CVE-2020-17066.

7.8 2020-11-11 CVE-2020-17062

Microsoft Office Access Connectivity Engine Remote Code Execution Vulnerability

7.8 2020-10-16 CVE-2020-16954

A remote code execution vulnerability exists in Microsoft Office software when the software fails to properly handle objects in memory, aka 'Microsoft Office Remote Code Execution Vulnerability'.

7.8 2020-10-16 CVE-2020-16930

A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-16929, CVE-2020-16931, CVE-2020-16932.

7.8 2020-10-16 CVE-2020-16929

A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-16930, CVE-2020-16931, CVE-2020-16932.

8.8 2020-09-11 CVE-2020-1335

A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-1193, CVE-2020-1332, CVE-2020-1594.

8.8 2020-09-11 CVE-2020-1193

A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-1332, CVE-2020-1335, CVE-2020-1594.

7.8 2020-08-17 CVE-2020-1563

A remote code execution vulnerability exists in Microsoft Office software when the software fails to properly handle objects in memory, aka 'Microsoft Office Remote Code Execution Vulnerability'.

5.5 2020-08-17 CVE-2020-1497

An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka 'Microsoft Excel Information Disclosure Vulnerability'.

8.8 2020-08-17 CVE-2020-1496

A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-1494, CVE-2020-1495, CVE-2020-1498, CVE-2020-1504.

8.8 2020-08-17 CVE-2020-1495

A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-1494, CVE-2020-1496, CVE-2020-1498, CVE-2020-1504.

8.8 2020-08-17 CVE-2020-1494

A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-1495, CVE-2020-1496, CVE-2020-1498, CVE-2020-1504.

4.3 2020-06-09 CVE-2020-1229

A security feature bypass vulnerability exists in Microsoft Outlook when Office fails to enforce security settings configured on a system, aka 'Microsoft Outlook Security Feature Bypass Vulnerability'.

9.8 2020-05-21 CVE-2020-0901

A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'.

7.8 2020-04-15 CVE-2020-0991

A remote code execution vulnerability exists in Microsoft Office software when the software fails to properly handle objects in memory, aka 'Microsoft Office Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0760.

8.8 2020-04-15 CVE-2020-0906

A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0979.

8.8 2020-04-15 CVE-2020-0760

A remote code execution vulnerability exists when Microsoft Office improperly loads arbitrary type libraries, aka 'Microsoft Office Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0991.

5.5 2019-12-10 CVE-2019-1464

An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka 'Microsoft Excel Information Disclosure Vulnerability'.

5.5 2019-12-10 CVE-2019-1463

An information disclosure vulnerability exists in Microsoft Access software when the software fails to properly handle objects in memory, aka 'Microsoft Access Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2019-1400.

5.5 2019-12-10 CVE-2019-1400

An information disclosure vulnerability exists in Microsoft Access software when the software fails to properly handle objects in memory, aka 'Microsoft Access Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2019-1463.

5.5 2019-11-12 CVE-2019-1446

An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka 'Microsoft Excel Information Disclosure Vulnerability'.

5.5 2019-11-12 CVE-2019-1402

An information disclosure vulnerability exists in Microsoft Office software when the software fails to properly handle objects in memory, aka 'Microsoft Office Information Disclosure Vulnerability'.

8.8 2019-10-10 CVE-2019-1331

A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-1327.

7.8 2019-09-11 CVE-2019-1264

A security feature bypass vulnerability exists when Microsoft Office improperly handles input, aka 'Microsoft Office Security Feature Bypass Vulnerability'.

CWE : Common Weakness Enumeration

%idName
39% (11) CWE-119 Failure to Constrain Operations within the Bounds of a Memory Buffer
25% (7) CWE-200 Information Exposure
14% (4) CWE-20 Improper Input Validation
10% (3) CWE-19 Data Handling
3% (1) CWE-787 Out-of-bounds Write
3% (1) CWE-416 Use After Free
3% (1) CWE-125 Out-of-bounds Read

Information Assurance Vulnerability Management (IAVM)

id Description
2015-A-0214 Multiple Vulnerabilities in Microsoft Office (MS15-099)
Severity: Category II - VMSKEY: V0061389
2015-A-0103 Multiple Vulnerabilities in Microsoft Office Products (MS15-046)
Severity: Category II - VMSKEY: V0060643

Snort® IPS/IDS

This CPE have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
Date Description
2019-09-24 Microsoft Outlook rwz file memory corruption attempt
RuleID : 51267 - Type : FILE-OFFICE - Revision : 1
2019-09-24 Microsoft Outlook rwz file memory corruption attempt
RuleID : 51266 - Type : FILE-OFFICE - Revision : 1
2019-05-09 Microsoft Office directory traversal attempt
RuleID : 49745 - Type : FILE-OFFICE - Revision : 1
2019-05-09 Microsoft Office directory traversal attempt
RuleID : 49744 - Type : FILE-OFFICE - Revision : 1
2019-05-09 Microsoft Office directory traversal attempt
RuleID : 49743 - Type : FILE-OFFICE - Revision : 1
2019-05-09 Microsoft Office directory traversal attempt
RuleID : 49742 - Type : FILE-OFFICE - Revision : 1
2019-05-09 Microsoft Office directory traversal attempt
RuleID : 49741 - Type : FILE-OFFICE - Revision : 1
2019-05-09 Microsoft Office directory traversal attempt
RuleID : 49740 - Type : FILE-OFFICE - Revision : 1
2019-05-09 Microsoft Office directory traversal attempt
RuleID : 49739 - Type : FILE-OFFICE - Revision : 1
2019-05-09 Microsoft Office directory traversal attempt
RuleID : 49738 - Type : FILE-OFFICE - Revision : 1
2019-05-09 Microsoft Office directory traversal attempt
RuleID : 49737 - Type : FILE-OFFICE - Revision : 1
2019-05-09 Microsoft Office directory traversal attempt
RuleID : 49736 - Type : FILE-OFFICE - Revision : 1
2019-05-09 Microsoft Office directory traversal attempt
RuleID : 49735 - Type : FILE-OFFICE - Revision : 1
2019-05-09 Microsoft Office directory traversal attempt
RuleID : 49734 - Type : FILE-OFFICE - Revision : 1
2019-05-09 Microsoft Office directory traversal attempt
RuleID : 49733 - Type : FILE-OFFICE - Revision : 2
2019-05-09 Microsoft Office directory traversal attempt
RuleID : 49732 - Type : FILE-OFFICE - Revision : 1
2019-05-09 Microsoft Office directory traversal attempt
RuleID : 49731 - Type : FILE-OFFICE - Revision : 1
2019-05-09 Microsoft Office directory traversal attempt
RuleID : 49730 - Type : FILE-OFFICE - Revision : 1
2019-05-09 Microsoft Office directory traversal attempt
RuleID : 49729 - Type : FILE-OFFICE - Revision : 1
2019-05-09 Microsoft Office directory traversal attempt
RuleID : 49728 - Type : FILE-OFFICE - Revision : 1
2019-05-09 Microsoft Office directory traversal attempt
RuleID : 49727 - Type : FILE-OFFICE - Revision : 1
2018-12-14 Microsoft Office Outlook rwz file memory corruption attempt
RuleID : 48406 - Type : FILE-OFFICE - Revision : 3
2018-12-14 Microsoft Office Outlook rwz file memory corruption attempt
RuleID : 48405 - Type : FILE-OFFICE - Revision : 3
2018-07-12 Microsoft Office Word malformed RTF memory corruption attempt
RuleID : 46941 - Type : FILE-OFFICE - Revision : 2
2018-07-12 Microsoft Office Word malformed RTF memory corruption attempt
RuleID : 46940 - Type : FILE-OFFICE - Revision : 2

Nessus® Vulnerability Scanner

id Description
2018-11-14 Name: An application installed on the remote macOS or Mac OS X host is affected by ...
File: macos_ms18_nov_office.nasl - Type: ACT_GATHER_INFO
2017-07-11 Name: An application installed on the remote Windows host is affected by multiple r...
File: smb_nt_ms17_jul_office.nasl - Type: ACT_GATHER_INFO
2017-06-14 Name: An application installed on the remote Windows host is affected by multiple v...
File: smb_nt_ms17_jun_office.nasl - Type: ACT_GATHER_INFO
2017-06-14 Name: An application installed on the remote Windows host is affected by multiple v...
File: smb_nt_ms17_jun_office_sharepoint.nasl - Type: ACT_GATHER_INFO
2017-06-14 Name: An application installed on the remote Windows host is affected by multiple v...
File: smb_nt_ms17_jun_office_web.nasl - Type: ACT_GATHER_INFO
2015-09-09 Name: The remote Windows host is affected by multiple remote code execution vulnera...
File: smb_nt_ms15-099.nasl - Type: ACT_GATHER_INFO
2015-05-13 Name: An application installed on the remote Mac OS X host is affected by a remote ...
File: macosx_ms15-046_office_2011.nasl - Type: ACT_GATHER_INFO
2015-05-13 Name: The remote host is affected by multiple remote code execution vulnerabilities.
File: smb_nt_ms15-046.nasl - Type: ACT_GATHER_INFO