Microsoft Office是美国微软(Microsoft)公司的一款办公软件套件产品。该产品常用组件包括Word、Excel、Access、Powerpoint、FrontPage等。 Microsoft Office 即点即用 (C2R) AppVLP 存在安全漏洞,该漏洞源于处理特定文件的方式存在特权提升漏洞。攻击者可利用该漏洞可以获得特权提升。以下产品及版本受到影响: Microsoft 365 Apps版本, Microsoft Office 2013 Click-to-Run版本, Mic
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Microsoft | Microsoft Office 2013 Click-to-Run (C2R) | 15.0.0.0 ~ 15.0.5571.1000 |
cpe:2.3:a:microsoft:office:2013:*:*:*:click-to-run:*:x86:*
|
|
| Microsoft | Microsoft Office 2019 | 19.0.0 ~ https://aka.ms/OfficeSecurityReleases |
cpe:2.3:a:microsoft:office:2019:*:*:*:*:*:*:*
|
|
| Microsoft | Microsoft 365 Apps for Enterprise | 16.0.1 ~ https://aka.ms/OfficeSecurityReleases |
cpe:2.3:a:microsoft:365_apps:-:*:*:*:enterprise:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2020-1080 | 8.8 HIGH | Windows Hyper-V Elevation of Privilege Vulnerability |
| CVE-2020-16898 | 8.8 HIGH | Windows TCP/IP Remote Code Execution Vulnerability |
| CVE-2020-16911 | 8.8 HIGH | GDI+ Remote Code Execution Vulnerability |
| CVE-2020-16891 | 8.8 HIGH | Windows Hyper-V Remote Code Execution Vulnerability |
| CVE-2020-16946 | 8.7 HIGH | Microsoft Office SharePoint XSS Vulnerability |
| CVE-2020-16945 | 8.7 HIGH | Microsoft Office SharePoint XSS Vulnerability |
| CVE-2020-16944 | 8.7 HIGH | Microsoft SharePoint Reflective XSS Vulnerability |
| CVE-2020-16952 | 8.6 HIGH | Microsoft SharePoint Remote Code Execution Vulnerability |
| CVE-2020-16951 | 8.6 HIGH | Microsoft SharePoint Remote Code Execution Vulnerability |
| CVE-2020-16939 | 7.8 HIGH | Group Policy Elevation of Privilege Vulnerability |
| CVE-2020-16954 | 7.8 HIGH | Microsoft Office Remote Code Execution Vulnerability |
| CVE-2020-16936 | 7.8 HIGH | Windows Backup Service Elevation of Privilege Vulnerability |
| CVE-2020-16935 | 7.8 HIGH | Windows COM Server Elevation of Privilege Vulnerability |
| CVE-2020-16929 | 7.8 HIGH | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2020-16928 | 7.8 HIGH | Microsoft Office Click-to-Run Elevation of Privilege Vulnerability |
| CVE-2020-16924 | 7.8 HIGH | Jet Database Engine Remote Code Execution Vulnerability |
| CVE-2020-16923 | 7.8 HIGH | Microsoft Graphics Components Remote Code Execution Vulnerability |
| CVE-2020-16930 | 7.8 HIGH | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2020-16940 | 7.8 HIGH | Windows - User Profile Service Elevation of Privilege Vulnerability |
| CVE-2020-16957 | 7.8 HIGH | Microsoft Office Access Connectivity Engine Remote Code Execution Vulnerability |
Showing top 20 of 89 CVEs. View all on vendor page → →
No comments yet