Microsoft Office Graphics Component Remote Code Execution Vulnerability
Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.
Release Notes Click to Run
Browse 4,355 advisories from this official source. Search by product, CVE, severity, or advisory ID.
Each date says whether the vendor published or updated the bulletin. A vendor bulletin describes products that may be affected. It does not prove that the vulnerable product or version is installed in your environment.
Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.
Release Notes Click to Run
Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally.
Click to Run Release Notes Install KB5002755.
Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.
Click to Run Release Notes Install KB5002897.
Relative path traversal in Windows PowerShell allows an authorized attacker to execute code over a network.
Install KB5099538. Install KB5099540. Install KB5099539. Install KB5099536. Install KB5101650. Install KB5101649. Install KB5099535. Install KB5099445. Install KB5099444.
Integer overflow or wraparound in .NET allows an unauthorized attacker to elevate privileges locally.
Install KB5122106. Install KB5122104. Install KB5122105.
Heap-based buffer overflow in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally.
Install KB5120238. Install KB5120242. Install KB5120229. Install KB5120249. Install KB5120233. Install KB5120228. Install KB5121003. Install KB5120994. Install KB5120240. Install KB5121000.
Insufficient granularity of access control in User-Mode Power Service (UMPS) allows an authorized attacker to elevate privileges locally.
Install KB5120238. Install KB5120242. Install KB5120229. Install KB5120249. Install KB5120233. Install KB5120228. Install KB5121003. Install KB5120994. Install KB5120240. Install KB5121000. Install KB5120418. Install ...
Use after free in Windows Installer allows an authorized attacker to elevate privileges locally.
Install KB5120233. Install KB5120228. Install KB5121003. Install KB5120994. Install KB5121000.
Heap-based buffer overflow in Windows Brokering File System allows an authorized attacker to elevate privileges locally.
Install KB5120233. Install KB5120228. Install KB5121003. Install KB5120994. Install KB5121000.
Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Teams for Android allows an authorized attacker to perform spoofing over a network.
Release Notes
Improper neutralization of input during web page generation ('cross-site scripting') in Azure Storage Explorer allows an unauthorized attacker to elevate privileges over a network.
Release Notes
Exposure of sensitive information to an unauthorized actor in Microsoft Teams Mobile allows an unauthorized attacker to disclose information over a network.
Release Notes
Deserialization of untrusted data in Microsoft High Performance Computing (HPC) Pack allows an unauthorized attacker to execute code over a network.
Release Notes
Improper limitation of a pathname to a restricted directory ('path traversal') in Microsoft Teams for Android allows an unauthorized attacker to execute code over a network.
Release Notes
Mariner
CBL-Mariner Releases
Mariner
CBL-Mariner Releases
Mariner
CBL-Mariner Releases
Mariner
CBL-Mariner Releases
Mariner
CBL-Mariner Releases
Mariner
CBL-Mariner Releases
Mariner
CBL-Mariner Releases
Mariner
CBL-Mariner Releases
Mariner
CBL-Mariner Releases
Mariner
CBL-Mariner Releases
We normalize the fields that vendors publish so you can search and compare advisories in one place. We do not replace the original bulletin or turn a product-name match into proof that a system is vulnerable.
Confirm the installed product and version, read the linked vendor guidance, and test the recommended update or mitigation through your normal change process.
Read how SecurityAlert collects and checks threat intelligence.