target entity

Office

29 source-linked records in the current knowledge graph.

high

CVE-2009-0238: Microsoft Office Remote Code Execution

Microsoft Office Excel contains a remote code execution vulnerability that could allow an attacker to take complete control of an affected system if a user opens a specially crafted Excel file that includes a malformed object. Required action: Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

CVE-2009-0238EPSS 43.1%MicrosoftOffice
CISA KEV ↗ · unattributed attribution
high

CVE-2026-21514: Microsoft Office Word Reliance on Untrusted Inputs in a Security Decision Vulnerability

Microsoft Office Word contains a reliance on untrusted inputs in a security decision vulnerability that could allow an authorized attacker to elevate privileges locally. Required action: Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

CVE-2026-21514EPSS 1.5%MicrosoftOffice
CISA KEV ↗ · unattributed attribution
high

CVE-2026-21509: Microsoft Office Security Feature Bypass Vulnerability

Microsoft Office contains a security feature bypass vulnerability in which reliance on untrusted inputs in a security decision in Microsoft Office could allow an unauthorized attacker to bypass a security feature locally. Some of the impacted product(s) could be end-of-life (EoL) and/or end-of-service (EoS). Users are advised to discontinue use and/or transition to a supported version. Required action: Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

CVE-2026-21509EPSS 72.2%MicrosoftOffice
CISA KEV ↗ · unattributed attribution
high

CVE-2009-0556: Microsoft Office PowerPoint Code Injection Vulnerability

Microsoft Office PowerPoint contains a code injection vulnerability that allows remote attackers to execute arbitrary code via a PowerPoint file with an OutlineTextRefAtom containing an invalid index value that triggers memory corruption. Required action: Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

CVE-2009-0556EPSS 67.5%MicrosoftOffice
CISA KEV ↗ · unattributed attribution
high

CVE-2007-0671: Microsoft Office Excel Remote Code Execution Vulnerability

Microsoft Office Excel contains a remote code execution vulnerability that can be exploited when a specially crafted Excel file is opened. This malicious file could be delivered as an email attachment or hosted on a malicious website. An attacker could leverage this vulnerability by creating a specially crafted Excel file, which, when opened, allowing an attacker to execute remote code on the affected system. Required action: Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

CVE-2007-0671EPSS 42.1%MicrosoftOffice
CISA KEV ↗ · unattributed attribution
high

CVE-2009-0563: Microsoft Office Buffer Overflow Vulnerability

Microsoft Office contains a buffer overflow vulnerability that allows remote attackers to execute code via a Word document with a crafted tag containing an invalid length field. Required action: Apply updates per vendor instructions.

CVE-2009-0563EPSS 63.1%MicrosoftOffice
CISA KEV ↗ · unattributed attribution
high

CVE-2017-11826: Microsoft Office Remote Code Execution Vulnerability

A remote code execution vulnerability exists in Microsoft Office software when the software fails to properly handle objects in memory. An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the current user. Required action: Apply updates per vendor instructions.

CVE-2017-11826EPSS 81.5%MicrosoftOffice
CISA KEV ↗ · unattributed attribution
high

CVE-2012-1856: Microsoft Office MSCOMCTL.OCX Remote Code Execution Vulnerability

The TabStrip ActiveX control in the Common Controls in MSCOMCTL.OCX in Microsoft Office allows remote attackers to execute arbitrary code via a crafted (1) document or (2) web page that triggers system-state corruption. Required action: Apply updates per vendor instructions.

CVE-2012-1856EPSS 72.1%MicrosoftOffice
CISA KEV ↗ · unattributed attribution · 1 IOC
high

CVE-2018-0798: Microsoft Office Memory Corruption Vulnerability

Microsoft Office contains a memory corruption vulnerability due to the way objects are handled in memory. Successful exploitation allows for remote code execution in the context of the current user. This vulnerability is known to be chained with CVE-2018-0802. Required action: Apply updates per vendor instructions.

CVE-2018-0798CVE-2018-0802EPSS 95.1%MicrosoftOffice
CISA KEV ↗ · unattributed attribution
high

CVE-2018-0802: Microsoft Office Memory Corruption Vulnerability

Microsoft Office contains a memory corruption vulnerability due to the way objects are handled in memory. Successful exploitation allows for remote code execution in the context of the current user. This vulnerability is known to be chained with CVE-2018-0798. Required action: Apply updates per vendor instructions.

CVE-2018-0798CVE-2018-0802EPSS 95.1%MicrosoftOffice
CISA KEV ↗ · unattributed attribution
high

CVE-2015-1641: Microsoft Office Memory Corruption Vulnerability

Microsoft Office contains a memory corruption vulnerability due to failure to properly handle rich text format files in memory. Successful exploitation allows for remote code execution in the context of the current user. Required action: Apply updates per vendor instructions.

CVE-2015-1641EPSS 96.8%MicrosoftOffice
CISA KEV ↗ · unattributed attribution
high

CVE-2016-3235: Microsoft Office OLE DLL Side Loading Vulnerability

Microsoft Office Object Linking & Embedding (OLE) dynamic link library (DLL) contains a side loading vulnerability due to it improperly validating input before loading libraries. Successful exploitation allows for remote code execution. Required action: Apply updates per vendor instructions.

CVE-2016-3235EPSS 43.4%MicrosoftOffice
CISA KEV ↗ · unattributed attribution