Microsoft Office是美国微软(Microsoft)公司的一款办公软件套件产品。该产品常用组件包括Word、Excel、Access、Powerpoint、FrontPage等。 Microsoft Office 存在安全漏洞。以下产品和版本受到影响:Microsoft Office 2019 for 32-bit editions,Microsoft Office 2019 for 64-bit editions,Microsoft 365 Apps for Enterprise for 3
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Microsoft | Microsoft 365 Apps for Enterprise | 16.0.1< https://aka.ms/OfficeSecurityReleases |
affected |
| Microsoft | Microsoft Office 2010 Service Pack 2 | 13.0.0.0< 14.0.7266.5000 |
affected |
| Microsoft | Microsoft Office 2013 Service Pack 1 | 15.0.0< publication |
affected |
| Microsoft | Microsoft Office 2016 | 16.0.0< 16.0.5134.1000 |
affected |
| Microsoft | Microsoft Office 2019 | 19.0.0< https://aka.ms/OfficeSecurityReleases |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Microsoft | Microsoft 365 Apps for Enterprise | 16.0.1 ~ https://aka.ms/OfficeSecurityReleases | - |
|
| Microsoft | Microsoft Office 2010 Service Pack 2 | 13.0.0.0 ~ 14.0.7266.5000 | - |
|
| Microsoft | Microsoft Office 2013 Service Pack 1 | 15.0.0 ~ publication | - |
|
| Microsoft | Microsoft Office 2016 | 16.0.0 ~ 16.0.5134.1000 | - |
|
| Microsoft | Microsoft Office 2019 | 19.0.0 ~ https://aka.ms/OfficeSecurityReleases | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2021-26867 | 9.9 CRITICAL | Windows Hyper-V Remote Code Execution Vulnerability |
| CVE-2021-26877 | 9.8 CRITICAL | Windows DNS Server Remote Code Execution Vulnerability |
| CVE-2021-26893 | 9.8 CRITICAL | Windows DNS Server Remote Code Execution Vulnerability |
| CVE-2021-26894 | 9.8 CRITICAL | Windows DNS Server Remote Code Execution Vulnerability |
| CVE-2021-26895 | 9.8 CRITICAL | Windows DNS Server Remote Code Execution Vulnerability |
| CVE-2021-26897 | 9.8 CRITICAL | Windows DNS Server Remote Code Execution Vulnerability |
| CVE-2021-27080 | 9.3 CRITICAL | Azure Sphere Unsigned Code Execution Vulnerability |
| CVE-2021-27085 | 8.8 HIGH | Internet Explorer Remote Code Execution Vulnerability |
| CVE-2021-27076 | 8.8 HIGH | Microsoft SharePoint Server Remote Code Execution Vulnerability |
| CVE-2021-26411 | 8.8 HIGH | Internet Explorer Memory Corruption Vulnerability |
| CVE-2021-26876 | 8.8 HIGH | OpenType Font Parsing Remote Code Execution Vulnerability |
| CVE-2021-26865 | 8.8 HIGH | Windows Container Execution Agent Elevation of Privilege Vulnerability |
| CVE-2021-26864 | 8.4 HIGH | Windows Virtual Registry Provider Elevation of Privilege Vulnerability |
| CVE-2021-26890 | 7.8 HIGH | Application Virtualization Remote Code Execution Vulnerability |
| CVE-2021-26861 | 7.8 HIGH | Windows Graphics Component Remote Code Execution Vulnerability |
| CVE-2021-26885 | 7.8 HIGH | Windows WalletService Elevation of Privilege Vulnerability |
| CVE-2021-26860 | 7.8 HIGH | Windows App-V Overlay Filter Elevation of Privilege Vulnerability |
| CVE-2021-26887 | 7.8 HIGH | Microsoft Windows Folder Redirection Elevation of Privilege Vulnerability |
| CVE-2021-26889 | 7.8 HIGH | Windows Update Stack Elevation of Privilege Vulnerability |
| CVE-2021-24090 | 7.8 HIGH | Windows Error Reporting Elevation of Privilege Vulnerability |
Showing top 20 of 80 CVEs. View all on vendor page → →
No comments yet