Vulnerabilities
Vulnerable Software
Untrusted pointer dereference in Microsoft Office Word allows an unauthorized attacker to disclose information locally.
CVSS Score
7.1
EPSS Score
0.001
Published
2025-09-09
Incorrect conversion between numeric types in Microsoft Office Word allows an unauthorized attacker to execute code locally.
CVSS Score
8.4
EPSS Score
0.002
Published
2025-08-12
Buffer over-read in Microsoft Office Word allows an unauthorized attacker to disclose information locally.
CVSS Score
6.8
EPSS Score
0.001
Published
2025-08-12
CVE-2025-49706
Known exploited
Improper authentication in Microsoft Office SharePoint allows an unauthorized attacker to perform spoofing over a network.
CVSS Score
6.5
EPSS Score
0.304
Published
2025-07-08
Deserialization of untrusted data in Microsoft Office allows an unauthorized attacker to elevate privileges locally.
CVSS Score
7.8
EPSS Score
0.002
Published
2025-07-08
Improper neutralization of special elements used in an sql command ('sql injection') in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
CVSS Score
8.8
EPSS Score
0.002
Published
2025-06-10
Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally.
CVSS Score
7.8
EPSS Score
0.001
Published
2025-06-10
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
CVSS Score
7.8
EPSS Score
0.001
Published
2025-06-10
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
CVSS Score
8.8
EPSS Score
0.035
Published
2025-06-10
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
CVSS Score
8.8
EPSS Score
0.019
Published
2025-06-10


Contact Us

Shodan ® - All rights reserved