Vulnerabilities (CVE)

Filtered by vendor Microsoft Subscribe
Filtered by product Office Web Apps Server
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-28456 1 Microsoft 5 365 Apps, Excel, Office and 2 more 2023-12-29 4.3 MEDIUM 5.5 MEDIUM
Microsoft Excel Information Disclosure Vulnerability
CVE-2022-30159 1 Microsoft 3 Office Online Server, Office Web Apps Server, Sharepoint Server 2023-12-21 4.3 MEDIUM 5.5 MEDIUM
Microsoft Office Information Disclosure Vulnerability. This CVE ID is unique from CVE-2022-30171, CVE-2022-30172.
CVE-2022-30171 1 Microsoft 3 Office Online Server, Office Web Apps Server, Sharepoint Server 2023-12-20 4.3 MEDIUM 5.5 MEDIUM
Microsoft Office Information Disclosure Vulnerability
CVE-2022-30172 1 Microsoft 3 Office Online Server, Office Web Apps Server, Sharepoint Server 2023-12-20 4.3 MEDIUM 5.5 MEDIUM
Microsoft Office Information Disclosure Vulnerability
CVE-2021-31178 1 Microsoft 6 365 Apps, Excel, Office and 3 more 2023-08-02 4.3 MEDIUM 5.5 MEDIUM
Microsoft Office Information Disclosure Vulnerability
CVE-2021-31174 1 Microsoft 5 365 Apps, Excel, Office and 2 more 2023-08-02 2.1 LOW 5.5 MEDIUM
Microsoft Excel Information Disclosure Vulnerability
CVE-2021-40472 1 Microsoft 6 365 Apps, Excel, Office and 3 more 2023-08-01 2.1 LOW 5.5 MEDIUM
Microsoft Excel Information Disclosure Vulnerability
CVE-2019-0561 1 Microsoft 6 Office, Office 365 Proplus, Office Web Apps Server and 3 more 2020-08-24 4.3 MEDIUM 5.5 MEDIUM
An information disclosure vulnerability exists when Microsoft Word macro buttons are used improperly, aka "Microsoft Word Information Disclosure Vulnerability." This affects Microsoft Word, Office 365 ProPlus, Microsoft Office, Word.
CVE-2017-0195 1 Microsoft 5 Excel Web App, Office Online Server, Office Web Apps and 2 more 2017-04-20 3.5 LOW 5.4 MEDIUM
Microsoft Excel Services on Microsoft SharePoint Server 2010 SP1 and SP2, Microsoft Excel Web Apps 2010 SP2, Microsoft Office Web Apps 2010 SP2, Microsoft Office Web Apps Server 2013 SP1 and Office Online Server allows remote attackers to perform cross-site scripting and run script with local user privileges via a crafted request, aka "Microsoft Office XSS Elevation of Privilege Vulnerability."