Microsoft Office是美国微软(Microsoft)公司的一款办公软件套件产品。该产品常用组件包括Word、Excel、Access、Powerpoint、FrontPage等。 Microsoft Office存在后置链接漏洞。攻击者利用该漏洞可以提升权限。以下产品和版本受到影响:Microsoft Office 2019 for 32-bit editions,Microsoft Office 2019 for 64-bit editions,Microsoft 365 Apps for
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Microsoft | Microsoft 365 Apps for Enterprise | 16.0.1< https://aka.ms/OfficeSecurityReleases |
affected |
| Microsoft | Microsoft Office 2016 | 16.0.0< 16.0.5478.1004 |
affected |
| Microsoft | Microsoft Office 2019 | 19.0.0< https://aka.ms/OfficeSecurityReleases |
affected |
| Microsoft | Microsoft Office LTSC 2021 | 16.0.1< https://aka.ms/OfficeSecurityReleases |
affected |
| Microsoft | Microsoft Office LTSC 2024 | 1.0.0< https://aka.ms/OfficeSecurityReleases |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Microsoft | Microsoft 365 Apps for Enterprise | 16.0.1 ~ https://aka.ms/OfficeSecurityReleases | - |
|
| Microsoft | Microsoft Office 2016 | 16.0.0 ~ 16.0.5478.1004 | - |
|
| Microsoft | Microsoft Office 2019 | 19.0.0 ~ https://aka.ms/OfficeSecurityReleases | - |
|
| Microsoft | Microsoft Office LTSC 2021 | 16.0.1 ~ https://aka.ms/OfficeSecurityReleases | - |
|
| Microsoft | Microsoft Office LTSC 2024 | 1.0.0 ~ https://aka.ms/OfficeSecurityReleases | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2024-49112 | 9.8 CRITICAL | Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability |
| CVE-2024-49102 | 8.8 HIGH | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
| CVE-2024-49104 | 8.8 HIGH | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
| CVE-2024-49093 | 8.8 HIGH | Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability |
| CVE-2024-49125 | 8.8 HIGH | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
| CVE-2024-49080 | 8.8 HIGH | Windows IP Routing Management Snapin Remote Code Execution Vulnerability |
| CVE-2024-49117 | 8.8 HIGH | Windows Hyper-V Remote Code Execution Vulnerability |
| CVE-2024-49085 | 8.8 HIGH | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
| CVE-2024-49086 | 8.8 HIGH | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
| CVE-2024-49105 | 8.4 HIGH | Remote Desktop Client Remote Code Execution Vulnerability |
| CVE-2024-49063 | 8.4 HIGH | Microsoft/Muzic Remote Code Execution Vulnerability |
| CVE-2024-49068 | 8.2 HIGH | Microsoft SharePoint Elevation of Privilege Vulnerability |
| CVE-2024-49132 | 8.1 HIGH | Windows Remote Desktop Services Remote Code Execution Vulnerability |
| CVE-2024-49106 | 8.1 HIGH | Windows Remote Desktop Services Remote Code Execution Vulnerability |
| CVE-2024-49126 | 8.1 HIGH | Windows Local Security Authority Subsystem Service (LSASS) Remote Code Execution Vulnerabi |
| CVE-2024-49122 | 8.1 HIGH | Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability |
| CVE-2024-49120 | 8.1 HIGH | Windows Remote Desktop Services Remote Code Execution Vulnerability |
| CVE-2024-49119 | 8.1 HIGH | Windows Remote Desktop Services Remote Code Execution Vulnerability |
| CVE-2024-49123 | 8.1 HIGH | Windows Remote Desktop Services Remote Code Execution Vulnerability |
| CVE-2024-49115 | 8.1 HIGH | Windows Remote Desktop Services Remote Code Execution Vulnerability |
Showing top 20 of 71 CVEs. View all on vendor page → →
No comments yet