Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2704▼ 598 respecto a la semana anterior
Críticas / altas1288▼ 199 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)299▼ 211 respecto a la semana anterior
–

124 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (9.3)18%—Microsoft Live MeetingMicrosoft LyncMicrosoft OfficeMicrosoft Skype FOR Business+109/12/201517/6/2026
The Windows font library in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, Windows 10 Gold and 1511, Office 2007 SP3, Office 2010 SP2, Word Viewer, Skype for Business 2016, Lync 2010, Lync 2013 SP1, and…
ModificadaAlta (9.3)17%—Microsoft Live MeetingMicrosoft LyncMicrosoft OfficeMicrosoft Skype FOR Business+39/12/201517/6/2026
The Windows font library in Microsoft Windows Vista SP2, Windows Server 2008 SP2, Office 2007 SP3, Office 2010 SP2, Word Viewer, Skype for Business 2016, Lync 2010, Lync 2013 SP1, and Live Meeting 2007 Console allows remote attackers to execute arbitrary code via a crafted embedded font, aka "Graphics Memory…
ModificadaAlta (9.3)15%—Microsoft OfficeMicrosoft Office Compatibility PackMicrosoft WordMicrosoft Word Viewer11/11/201517/6/2026
Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word 2013 SP1, Word 2013 RT SP1, Word 2016, Office Compatibility Pack SP3, and Word Viewer allow remote attackers to execute arbitrary code via a crafted Office document, aka "Microsoft Office Memory Corruption Vulnerability."
ModificadaAlta (9.3)15%—Microsoft OfficeMicrosoft WordMicrosoft Word Viewer11/11/201517/6/2026
Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word 2013 SP1, Word 2013 RT SP1, Word 2016, and Word Viewer allow remote attackers to execute arbitrary code via a crafted Office document, aka "Microsoft Office Memory Corruption Vulnerability."
ModificadaAlta (9.3)14%—Microsoft OfficeMicrosoft Word Viewer15/8/201517/6/2026
Microsoft Office 2007 SP3, Office for Mac 2011, Office for Mac 2016, and Word Viewer allow remote attackers to execute arbitrary code via a crafted document, aka "Microsoft Office Memory Corruption Vulnerability."
ModificadaAlta (9.3)27%💥 ExploitMicrosoft OfficeMicrosoft WordMicrosoft Word Viewer15/8/201517/6/2026
Integer underflow in Microsoft Office 2007 SP3, Office 2010 SP2, Office 2013 SP1, Office 2013 RT SP1, Office for Mac 2011, and Word Viewer allows remote attackers to execute arbitrary code via a crafted document, aka "Microsoft Office Integer Underflow Vulnerability."
ModificadaAlta (9.3)30%💥 ExploitMicrosoft OfficeMicrosoft Office Compatibility PackMicrosoft Sharepoint ServerMicrosoft Word+315/8/201517/6/2026
Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word 2013 SP1, Word 2013 RT SP1, Office for Mac 2011, Office for Mac 2016, Office Compatibility Pack SP3, Word Viewer, Word Automation Services on SharePoint Server 2010 SP2 and 2013 SP1, Word Web Apps 2010 SP2, and Office Web Apps Server 2013 SP1 allow remote…
AnalizadaAlta (8.8)40%⚠ Explotación activaMicrosoft Excel ViewerMicrosoft OfficeMicrosoft Office Compatibility PackMicrosoft Powerpoint+214/7/201517/6/2026
Microsoft PowerPoint 2007 SP3, Word 2007 SP3, PowerPoint 2010 SP2, Word 2010 SP2, PowerPoint 2013 SP1, Word 2013 SP1, and PowerPoint 2013 RT SP1 allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted Office document, aka "Microsoft Office Memory Corruption…
ModificadaAlta (9.3)14%—Microsoft OfficeMicrosoft WordMicrosoft Word Viewer14/7/201517/6/2026
Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word 2013 SP1, Word 2013 RT SP1, Office for Mac 2011, and Word Viewer allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted Office document, aka "Microsoft Office Memory Corruption Vulnerability."
ModificadaAlta (7.5)2.3%—Hancom Hanword Viewer 2007Hancom Hanword Viewer 2010Hancom HWP 2014Hancom Hwpviewer 201415/5/201517/6/2026
Integer overflow in the HwpApp::CHncSDS_Manager function in Hancom Office HanWord processor, as used in Hwp 2014 VP before 9.1.0.2342, HanWord Viewer 2007 and Viewer 2010 8.5.6.1158, and HwpViewer 2014 VP 9.1.0.2186, allows remote attackers to cause a denial of service (crash) and possibly "influence the program's…
ModificadaAlta (9.3)16%—Microsoft Office Compatibility PackMicrosoft WordMicrosoft Word Viewer14/4/201517/6/2026
Use-after-free vulnerability in Microsoft Word 2007 SP3, Word Viewer, and Office Compatibility Pack SP3 allows remote attackers to execute arbitrary code via a crafted Office document, aka "Microsoft Office Component Use After Free Vulnerability."
ModificadaAlta (9.3)27%—Microsoft OfficeMicrosoft Office Compatibility PackMicrosoft Office WEB AppsMicrosoft Sharepoint Server+214/4/201517/6/2026
Use-after-free vulnerability in Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word 2013 SP1, Word 2013 RT SP1, Word Viewer, Office Compatibility Pack SP3, Word Automation Services on SharePoint Server 2010 SP2 and 2013 SP1, and Office Web Apps Server 2010 SP2 and 2013 SP1 allows remote attackers to execute…
ModificadaAlta (9.3)23%—Microsoft OfficeMicrosoft Office Compatibility PackMicrosoft Office WEB AppsMicrosoft Sharepoint Server+214/4/201517/6/2026
Use-after-free vulnerability in Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word Viewer, Office Compatibility Pack SP3, Word Automation Services on SharePoint Server 2010 SP2, and Office Web Apps Server 2010 SP2 allows remote attackers to execute arbitrary code via a crafted Office document, aka…
ModificadaAlta (9.3)13%—Microsoft OfficeMicrosoft Office Compatibility PackMicrosoft Office WEB Apps ServerMicrosoft Sharepoint Server+311/3/201517/6/2026
Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word 2013 Gold and SP1, Word 2013 RT Gold and SP1, Word Viewer, Office Compatibility Pack SP3, Word Automation Services on SharePoint Server 2010 SP2, Word Automation Services on SharePoint Server 2013 Gold and SP1, Web Applications 2010 SP2, and Web Apps Server…
ModificadaAlta (9.3)30%💥 ExploitMicrosoft WEB ApplicationsMicrosoft Office Compatibility PackMicrosoft Word Automation ServicesMicrosoft Word+311/2/201517/6/2026
Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word Automation Services in SharePoint Server 2010, Web Applications 2010 SP2, Word Viewer, and Office Compatibility Pack SP3 allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted Office document, aka…
ModificadaAlta (9.3)14%—Microsoft OfficeMicrosoft Office Compatibility PackMicrosoft Sharepoint ServerMicrosoft WEB Applications+111/12/201417/6/2026
Use-after-free vulnerability in Microsoft Office 2010 SP2, Office 2013 Gold and SP1, Office 2013 RT Gold and SP1, Office for Mac 2011, Word Viewer, Office Compatibility Pack SP3, Word Automation Services on SharePoint Server 2010 SP2 and 2013 Gold and SP1, and Office Web Apps 2010 SP2 and 2013 Gold and SP1 allows…
ModificadaAlta (9.3)16%—Microsoft Office Compatibility PackMicrosoft Office Word ViewerMicrosoft Word11/11/201417/6/2026
Microsoft Word 2007 SP3, Word Viewer, and Office Compatibility Pack SP3 allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted Office document, aka "Microsoft Office Invalid Pointer Remote Code Execution Vulnerability."
ModificadaAlta (9.3)17%—Microsoft Office Compatibility PackMicrosoft Office Word ViewerMicrosoft Word11/11/201417/6/2026
Microsoft Word 2007 SP3, Word Viewer, and Office Compatibility Pack SP3 allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted Office document, aka "Microsoft Office Bad Index Remote Code Execution Vulnerability."
ModificadaAlta (9.3)18%—Microsoft Office Compatibility PackMicrosoft Office Word ViewerMicrosoft Word11/11/201417/6/2026
Microsoft Word 2007 SP3, Word Viewer, and Office Compatibility Pack SP3 allow remote attackers to execute arbitrary code via a crafted Office document, aka "Microsoft Office Double Delete Remote Code Execution Vulnerability."
AnalizadaAlta (7.8)77%⚠ Explotación activa💥 ExploitMicrosoft OfficeMicrosoft Office Compatibility PackMicrosoft Office WEB AppsMicrosoft Office WEB Apps Server+325/3/201417/6/2026
Microsoft Word 2003 SP3, 2007 SP3, 2010 SP1 and SP2, 2013, and 2013 RT; Word Viewer; Office Compatibility Pack SP3; Office for Mac 2011; Word Automation Services on SharePoint Server 2010 SP1 and SP2 and 2013; Office Web Apps 2010 SP1 and SP2; and Office Web Apps Server 2013 allow remote attackers to execute arbitrary…
ModificadaAlta (9.3)15%—Microsoft Office Compatibility PackMicrosoft Office WEB AppsMicrosoft Office WEB Apps ServerMicrosoft Sharepoint Server+215/1/201417/6/2026
Microsoft Word 2003 SP3, 2007 SP3, 2010 SP1 and SP2, 2013, and 2013 RT; Office Compatibility Pack SP3; Word Viewer; SharePoint Server 2010 SP1 and SP2 and 2013; Office Web Apps 2010 SP1 and SP2; and Office Web Apps Server 2013 allow remote attackers to execute arbitrary code or cause a denial of service (memory…
ModificadaAlta (9.3)16%—Microsoft Office Compatibility PackMicrosoft WordMicrosoft Word Viewer15/1/201417/6/2026
Microsoft Word 2003 SP3 and 2007 SP3, Office Compatibility Pack SP3, and Word Viewer allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted Office document, aka "Word Memory Corruption Vulnerability."
AnalizadaAlta (7.8)85%⚠ Explotación activa💥 ExploitMicrosoft Excel ViewerMicrosoft LyncMicrosoft OfficeMicrosoft Office Compatibility Pack+46/11/201316/6/2026
GDI+ in Microsoft Windows Vista SP2 and Server 2008 SP2; Office 2003 SP3, 2007 SP3, and 2010 SP1 and SP2; Office Compatibility Pack SP3; and Lync 2010, 2010 Attendee, 2013, and Basic 2013 allows remote attackers to execute arbitrary code via a crafted TIFF image, as demonstrated by an image in a Word document, and…
ModificadaAlta (9.3)21%—Microsoft Office Compatibility PackMicrosoft WordMicrosoft Word ViewerMicrosoft Office WEB Apps+111/9/201316/6/2026
Microsoft Word Automation Services in SharePoint Server 2010 SP1, Word Web App 2010 SP1 in Office Web Apps 2010, Word 2003 SP3, Word 2007 SP3, Word 2010 SP1, Office Compatibility Pack SP3, and Word Viewer allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted…
ModificadaAlta (9.3)21%—Microsoft Sharepoint ServerMicrosoft Office Compatibility PackMicrosoft WordMicrosoft Word Viewer+111/9/201316/6/2026
Microsoft Word Automation Services in SharePoint Server 2010 SP1 and SP2, Word Web App 2010 SP1 and SP2 in Office Web Apps 2010, Word 2003 SP3, Word 2007 SP3, Word 2010 SP1 and SP2, Office Compatibility Pack SP3, and Word Viewer allow remote attackers to execute arbitrary code or cause a denial of service (memory…
Orbitaley — Vulnerabilidades