Microsoft Microsoft 365 Apps for Enterprise, Microsoft Office 2016, Microsoft Office 2019
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
The CVSS severity warrants an early asset and exposure review.Use CVSS, EPSS, CISA KEV, affected-version data, and source evidence as separate signals for prioritization.
NVD data is used under its public data terms. This service is not endorsed or certified by NVD.Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
The CVSS severity warrants an early asset and exposure review.Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.
The CVSS severity warrants an early asset and exposure review.Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.
The CVSS severity warrants an early asset and exposure review.Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.
The CVSS severity warrants an early asset and exposure review.Use after free in Windows TCP/IP allows an authorized attacker to elevate privileges locally.
The CVSS severity warrants an early asset and exposure review.Use after free in Windows TCP/IP allows an authorized attacker to elevate privileges locally.
The CVSS severity warrants an early asset and exposure review.Use after free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally.
The CVSS severity warrants an early asset and exposure review.Stack-based buffer overflow in Active Directory Federation Services allows an unauthorized attacker to deny service over a network.
The CVSS severity warrants an early asset and exposure review.Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.
The CVSS severity warrants an early asset and exposure review.Buffer Overflow in the entry handler of the TraceEvent() system call could allow an attacker with local access to cause information disclosure, data tampering or a crash of the QNX Neutrino kernel.
The CVSS severity warrants an early asset and exposure review.Audition is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
The CVSS severity warrants an early asset and exposure review.Audition is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
The CVSS severity warrants an early asset and exposure review.Audition is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
The CVSS severity warrants an early asset and exposure review.Audition is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
The CVSS severity warrants an early asset and exposure review.Audition is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
The CVSS severity warrants an early asset and exposure review.