|
249101
|
6.5 |
MEDIUM
Network
|
microsoft
|
exchange_server
|
Microsoft Exchange Server 2010 Service Pack 3 Update Rollup 20, Microsoft Exchange Server 2013 Cumulative Update 18, Microsoft Exchange Server 2013 Cumulative Update 19, Microsoft Exchange Server 201…
|
CWE-601
Open Redirect
|
CVE-2018-0924
|
2024-11-21 12:39 |
2018-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249102
|
7.8 |
HIGH
Local
|
microsoft
|
word office office_web_apps sharepoint_server office_word_viewer sharepoint_enterprise_server office_online_server office_compatibility_pack
|
Microsoft Office 2010 SP2, 2013 SP1, and 2016, Microsoft Office 2016 Click-to-Run Microsoft Office 2016 for Mac, Microsoft Office Compatibility Pack SP2, Microsoft Office Web Apps 2010 SP2, Microsoft…
|
CWE-787
Out-of-bounds Write
|
CVE-2018-0922
|
2024-11-21 12:39 |
2018-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249103
|
8.8 |
HIGH
Network
|
microsoft
|
sharepoint_enterprise_server
|
Microsoft SharePoint Enterprise Server 2016 allows an elevation of privilege vulnerability to due how specially crafted web requests are sanitized, aka "Microsoft SharePoint Elevation of Privilege Vu…
|
CWE-79
Cross-site Scripting
|
CVE-2018-0921
|
2024-11-21 12:39 |
2018-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249104
|
3.3 |
LOW
Local
|
microsoft
|
word office_web_apps sharepoint_server office office_web_apps_server sharepoint_enterprise_server office_online_server
|
Microsoft Office 2010 SP2, 2013 SP1, and 2016, Microsoft Office 2016 Click-to-Run Microsoft Office 2016 for Mac, Microsoft Office Web Apps 2010 SP2, Microsoft Office Web Apps 2013 SP1, Microsoft Shar…
|
CWE-125 CWE-908
Out-of-bounds Read Use of Uninitialized Resource
|
CVE-2018-0919
|
2024-11-21 12:39 |
2018-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249105
|
8.8 |
HIGH
Network
|
microsoft
|
sharepoint_enterprise_server
|
Microsoft SharePoint Enterprise Server 2016 allows an elevation of privilege vulnerability to due how specially crafted web requests are sanitized, aka "Microsoft SharePoint Elevation of Privilege Vu…
|
CWE-79
Cross-site Scripting
|
CVE-2018-0917
|
2024-11-21 12:39 |
2018-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249106
|
8.8 |
HIGH
Network
|
microsoft
|
project_server sharepoint_enterprise_server
|
Microsoft Project Server 2013 SP1 and Microsoft SharePoint Enterprise Server 2016 allow an elevation of privilege vulnerability to due how specially crafted web requests are sanitized, aka "Microsoft…
|
CWE-79
Cross-site Scripting
|
CVE-2018-0915
|
2024-11-21 12:39 |
2018-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249107
|
7.8 |
HIGH
Local
|
microsoft
|
excel office
|
Microsoft Excel 2007 SP3, Microsoft Excel 2010 SP2, Microsoft Excel 2013 SP1, Microsoft Excel 2016, Microsoft Office 2016 Click-to-Run and Microsoft Office 2016 for Mac allow a security feature bypas…
|
NVD-CWE-noinfo
|
CVE-2018-0907
|
2024-11-21 12:39 |
2018-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249108
|
7.8 |
HIGH
Local
|
microsoft
|
access office
|
Microsoft Access 2010 SP2, Microsoft Access 2013 SP1, Microsoft Access 2016, and Microsoft Office 2016 Click-to-Run allow a remote code execution vulnerability due to how objects are handled in memor…
|
NVD-CWE-noinfo
|
CVE-2018-0903
|
2024-11-21 12:39 |
2018-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249109
|
8.8 |
HIGH
Network
|
microsoft
|
project_server sharepoint_enterprise_server
|
Microsoft Project Server 2013 SP1 and Microsoft SharePoint Enterprise Server 2016 allow an elevation of privilege vulnerability to due how specially crafted web requests are sanitized, aka "Microsoft…
|
CWE-79
Cross-site Scripting
|
CVE-2018-0916
|
2024-11-21 12:39 |
2018-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249110
|
8.8 |
HIGH
Network
|
microsoft
|
project_server sharepoint_enterprise_server
|
Microsoft Project Server 2013 SP1 and Microsoft SharePoint Enterprise Server 2016 allow an elevation of privilege vulnerability to due how specially crafted web requests are sanitized, aka "Microsoft…
|
CWE-79
Cross-site Scripting
|
CVE-2018-0914
|
2024-11-21 12:39 |
2018-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|