Microsoft Word是美国微软(Microsoft)公司的一套Office套件中的文字处理软件。 Microsoft Office Word存在安全漏洞。攻击者利用该漏洞可以获取敏感信息。以下产品和版本受到影响:Microsoft Office 2019 for 32-bit editions,Microsoft Office 2019 for 64-bit editions,Microsoft 365 Apps for Enterprise for 32-bit Systems,Microsof
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Microsoft | Microsoft Office 2019 | 19.0.0 ~ https://aka.ms/OfficeSecurityReleases | - |
|
| Microsoft | Microsoft 365 Apps for Enterprise | 16.0.1 ~ https://aka.ms/OfficeSecurityReleases | - |
|
| Microsoft | Microsoft Office LTSC 2021 | 16.0.1 ~ https://aka.ms/OfficeSecurityReleases | - |
|
| Microsoft | Microsoft Word 2016 | 16.0.1 ~ 16.0.5413.1000 | - |
|
| Microsoft | Microsoft Word 2013 Service Pack 1 | 15.0.1 ~ 15.0.5589.1001 | - |
|
| Microsoft | Microsoft Word 2013 Service Pack 1 | 15.0.1 ~ 15.0.5589.1001 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2023-33136 | 8.8 HIGH | Azure DevOps Server Remote Code Execution Vulnerability |
| CVE-2023-38146 | 8.8 HIGH | Windows Themes Remote Code Execution Vulnerability |
| CVE-2023-38147 | 8.8 HIGH | Windows Miracast Wireless Display Remote Code Execution Vulnerability |
| CVE-2023-38148 | 8.8 HIGH | Internet Connection Sharing (ICS) Remote Code Execution Vulnerability |
| CVE-2023-36764 | 8.8 HIGH | Microsoft SharePoint Server Elevation of Privilege Vulnerability |
| CVE-2023-36756 | 8.0 HIGH | Microsoft Exchange Server Remote Code Execution Vulnerability |
| CVE-2023-36757 | 8.0 HIGH | Microsoft Exchange Server Spoofing Vulnerability |
| CVE-2023-36744 | 8.0 HIGH | Microsoft Exchange Server Remote Code Execution Vulnerability |
| CVE-2023-36745 | 8.0 HIGH | Microsoft Exchange Server Remote Code Execution Vulnerability |
| CVE-2023-36742 | 7.8 HIGH | Visual Studio Code Remote Code Execution Vulnerability |
| CVE-2023-38139 | 7.8 HIGH | Windows Kernel Elevation of Privilege Vulnerability |
| CVE-2023-36758 | 7.8 HIGH | Visual Studio Elevation of Privilege Vulnerability |
| CVE-2023-36766 | 7.8 HIGH | Microsoft Excel Information Disclosure Vulnerability |
| CVE-2023-36765 | 7.8 HIGH | Microsoft Office Elevation of Privilege Vulnerability |
| CVE-2023-38142 | 7.8 HIGH | Windows Kernel Elevation of Privilege Vulnerability |
| CVE-2023-36739 | 7.8 HIGH | 3D Viewer Remote Code Execution Vulnerability |
| CVE-2023-38161 | 7.8 HIGH | Windows GDI Elevation of Privilege Vulnerability |
| CVE-2023-38150 | 7.8 HIGH | Windows Kernel Elevation of Privilege Vulnerability |
| CVE-2023-38144 | 7.8 HIGH | Windows Common Log File System Driver Elevation of Privilege Vulnerability |
| CVE-2023-38141 | 7.8 HIGH | Windows Kernel Elevation of Privilege Vulnerability |
Showing top 20 of 59 CVEs. View all on vendor page → →
No comments yet