Vulnerabilities
Summary — last 7 days
New vulnerabilities2,624▼ 223 vs. last week
Critical / high1,373▲ 144 vs. last week
New active exploitation (KEV)7▼ 3 vs. last week
Unscored (no CVSS)81▼ 449 vs. last week
3 results, sorted by published date (most recent first)
| CVE | Status | Severity | EPSS | Active exploitation | Affected technologies | Published ▼ | Modified | Description |
|---|---|---|---|---|---|---|---|---|
| Modified | High (9.3) | 62% | — | Microsoft ISA ServerMicrosoft OfficeMicrosoft Office WEB ComponentsMicrosoft Office XP | 7/15/2009 | 6/16/2026 | The Microsoft Office Web Components Spreadsheet ActiveX control (aka OWC10 or OWC11), as distributed in Office XP SP3 and Office 2003 SP3, Office XP Web Components SP3, Office 2003 Web Components SP3, Office 2003 Web Components SP1 for the 2007 Microsoft Office System, Internet Security and Acceleration (ISA) Server… | |
| Modified | High (9.3) | 36% | — | Microsoft OfficeMicrosoft Office XPMicrosoft Works | 6/10/2009 | 6/16/2026 | Buffer overflow in the Works for Windows document converters in Microsoft Office 2000 SP3, Office XP SP3, Office 2003 SP3, Office 2007 SP1, and Works 8.5 and 9 allows remote attackers to execute arbitrary code via a crafted Works .wps file that triggers memory corruption, aka "File Converter Buffer Overflow… | |
| Modified | High (7.5) | 1.0% | — | Advanced Data Solutions Virtual Support Office XP | 3/17/2008 | 6/16/2026 | SQL injection vulnerability in MyIssuesView.asp in Advanced Data Solutions Virtual Support Office-XP (VSO-XP) allows remote attackers to execute arbitrary SQL commands via the Issue_ID parameter. |