Microsoft Word是美国微软(Microsoft)公司的一套Office套件中的文字处理软件。 Microsoft Word 存在安全漏洞,该漏洞源于软件无法正确处理 .LNK 文件时,该软件中存在安全功能绕过漏洞。攻击者可利用该漏洞使用经特殊设计的文件在当前用户的安全上下文中执行操作。以下产品及版本受到影响: Microsoft Word 2013 SP1版本, Microsoft Office 2016版本, Microsoft Word 2010 SP2版本, Microsoft Offi
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Microsoft | Microsoft Office 2019 | 19.0.0 ~ https://aka.ms/OfficeSecurityReleases |
cpe:2.3:a:microsoft:office:2019:*:*:*:*:*:*:*
|
|
| Microsoft | Microsoft Office 2019 for Mac | 16.0.0 ~ publication |
cpe:2.3:a:microsoft:office:2019:*:*:*:*:macos:*:*
|
|
| Microsoft | Microsoft 365 Apps for Enterprise | 16.0.1 ~ https://aka.ms/OfficeSecurityReleases |
cpe:2.3:a:microsoft:365_apps:-:*:*:*:enterprise:*:*:*
|
|
| Microsoft | Microsoft Word 2016 | 16.0.1 ~ publication |
cpe:2.3:a:microsoft:word:2016:*:*:*:*:*:*:*
|
|
| Microsoft | Microsoft Office 2016 for Mac | 16.0.0 ~ publication |
cpe:2.3:a:microsoft:office:2016:*:*:*:*:mac_os:*:*
|
|
| Microsoft | Microsoft Word 2010 Service Pack 2 | 13.0.0.0 ~ publication |
cpe:2.3:a:microsoft:word:2010:sp2:*:*:*:*:*:*
|
|
| Microsoft | Microsoft Word 2013 Service Pack 1 | 15.0.1 ~ publication |
cpe:2.3:a:microsoft:word:2013:sp1:*:*:*:*:*:*
|
|
| Microsoft | Microsoft Word 2013 Service Pack 1 | 15.0.1 ~ publication |
cpe:2.3:a:microsoft:word:2013:sp1:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2020-1080 | 8.8 HIGH | Windows Hyper-V Elevation of Privilege Vulnerability |
| CVE-2020-16898 | 8.8 HIGH | Windows TCP/IP Remote Code Execution Vulnerability |
| CVE-2020-16911 | 8.8 HIGH | GDI+ Remote Code Execution Vulnerability |
| CVE-2020-16891 | 8.8 HIGH | Windows Hyper-V Remote Code Execution Vulnerability |
| CVE-2020-16946 | 8.7 HIGH | Microsoft Office SharePoint XSS Vulnerability |
| CVE-2020-16945 | 8.7 HIGH | Microsoft Office SharePoint XSS Vulnerability |
| CVE-2020-16944 | 8.7 HIGH | Microsoft SharePoint Reflective XSS Vulnerability |
| CVE-2020-16952 | 8.6 HIGH | Microsoft SharePoint Remote Code Execution Vulnerability |
| CVE-2020-16951 | 8.6 HIGH | Microsoft SharePoint Remote Code Execution Vulnerability |
| CVE-2020-16939 | 7.8 HIGH | Group Policy Elevation of Privilege Vulnerability |
| CVE-2020-16954 | 7.8 HIGH | Microsoft Office Remote Code Execution Vulnerability |
| CVE-2020-16936 | 7.8 HIGH | Windows Backup Service Elevation of Privilege Vulnerability |
| CVE-2020-16935 | 7.8 HIGH | Windows COM Server Elevation of Privilege Vulnerability |
| CVE-2020-16929 | 7.8 HIGH | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2020-16928 | 7.8 HIGH | Microsoft Office Click-to-Run Elevation of Privilege Vulnerability |
| CVE-2020-16924 | 7.8 HIGH | Jet Database Engine Remote Code Execution Vulnerability |
| CVE-2020-16923 | 7.8 HIGH | Microsoft Graphics Components Remote Code Execution Vulnerability |
| CVE-2020-16930 | 7.8 HIGH | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2020-16940 | 7.8 HIGH | Windows - User Profile Service Elevation of Privilege Vulnerability |
| CVE-2020-16957 | 7.8 HIGH | Microsoft Office Access Connectivity Engine Remote Code Execution Vulnerability |
Showing top 20 of 89 CVEs. View all on vendor page → →
No comments yet