Microsoft / Visio
54 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2024-38016 | Microsoft Office Visio Remote Code Execution Vulnerability | HIGH | 7.8 | Sep 19, 2024 |
| CVE-2024-43463 | Microsoft Office Visio Remote Code Execution Vulnerability | HIGH | 7.8 | Sep 10, 2024 |
| CVE-2024-20673 | Microsoft Office Remote Code Execution Vulnerability | HIGH | 7.8 | Feb 13, 2024 |
| CVE-2023-21741 | Microsoft Office Visio Information Disclosure Vulnerability | HIGH | 7.1 | Jan 10, 2023 |
| CVE-2023-21737 | Microsoft Office Visio Remote Code Execution Vulnerability | HIGH | 7.8 | Jan 10, 2023 |
| CVE-2023-21736 | Microsoft Office Visio Remote Code Execution Vulnerability | HIGH | 7.8 | Jan 10, 2023 |
| CVE-2022-44695 | Microsoft Office Visio Remote Code Execution Vulnerability | HIGH | 7.8 | Dec 13, 2022 |
| CVE-2022-38010 | Microsoft Office Visio Remote Code Execution Vulnerability | HIGH | 7.8 | Sep 13, 2022 |
| CVE-2021-27055 | Microsoft Visio Security Feature Bypass Vulnerability | HIGH | 7.0 | Mar 11, 2021 |
| CVE-2020-0760 | A remote code execution vulnerability exists when Microsoft Office improperly loads arbitrary type libraries, aka 'Microsoft Office Remote Code Execution Vulne… | HIGH | 8.8 | Apr 15, 2020 |
| CVE-2016-3364 | Microsoft Visio 2016 allows remote attackers to execute arbitrary code via a crafted document, aka "Microsoft Office Memory Corruption Vulnerability." | HIGH | 7.8 | Sep 14, 2016 |
| CVE-2016-3235 KEV | Microsoft Visio 2007 SP3, Visio 2010 SP2, Visio 2013 SP1, Visio 2016, Visio Viewer 2007 SP3, and Visio Viewer 2010 mishandle library loading, which allows loca… | HIGH | 7.8 | Jun 16, 2016 |
| CVE-2016-0012 | Microsoft Office 2007 SP3, Excel 2007 SP3, PowerPoint 2007 SP3, Visio 2007 SP3, Word 2007 SP3, Office 2010 SP2, Excel 2010 SP2, PowerPoint 2010 SP2, Visio 2010… | MEDIUM | 4.3 | Jan 13, 2016 |
| CVE-2015-2503 | Microsoft Access 2007 SP3, Excel 2007 SP3, InfoPath 2007 SP3, OneNote 2007 SP3, PowerPoint 2007 SP3, Project 2007 SP3, Publisher 2007 SP3, Visio 2007 SP3, Word… | HIGH | 9.3 | Nov 11, 2015 |
| CVE-2015-2557 | Buffer overflow in Microsoft Visio 2007 SP3 and 2010 SP2 allows remote attackers to execute arbitrary code via crafted UML data in an Office document, aka "Mic… | HIGH | 9.3 | Oct 14, 2015 |
| CVE-2015-2423 | Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.… | MEDIUM | 4.3 | Aug 15, 2015 |
| CVE-2013-1301 | Microsoft Visio 2003 SP3 2007 SP3, and 2010 SP1 allows remote attackers to read arbitrary files via an XML document containing an external entity declaration i… | MEDIUM | 4.3 | May 15, 2013 |
| CVE-2013-0079 | Microsoft Visio Viewer 2010 SP1 allows remote attackers to execute arbitrary code via a crafted Visio file that triggers incorrect memory allocation, aka "Visi… | HIGH | 9.3 | Mar 13, 2013 |
| CVE-2012-1888 | Buffer overflow in Microsoft Visio 2010 SP1 and Visio Viewer 2010 SP1 allows remote attackers to execute arbitrary code via a crafted Visio file, aka "Visio DX… | HIGH | 9.3 | Aug 15, 2012 |
| CVE-2011-1979 | Microsoft Visio 2003 SP3 and 2007 SP2 does not properly validate objects in memory during Visio file parsing, which allows remote attackers to execute arbitrar… | HIGH | 9.3 | Aug 10, 2011 |
| CVE-2011-1972 | Microsoft Visio 2003 SP3, 2007 SP2, and 2010 Gold and SP1 does not properly validate objects in memory during Visio file parsing, which allows remote attackers… | HIGH | 9.3 | Aug 10, 2011 |
| CVE-2011-0093 | ELEMENTS.DLL in Microsoft Visio 2002 SP2, 2003 SP3, and 2007 SP2 does not properly parse structures during the opening of a Visio file, which allows remote att… | HIGH | 9.3 | Feb 10, 2011 |
| CVE-2011-0092 | The LZW stream decompression functionality in ORMELEMS.DLL in Microsoft Visio 2002 SP2, 2003 SP3, and 2007 SP2 allows remote attackers to execute arbitrary cod… | HIGH | 9.3 | Feb 10, 2011 |
| CVE-2010-3148 | Untrusted search path vulnerability in Microsoft Visio 2003 SP3 allows local users to gain privileges via a Trojan horse mfc71enu.dll file in the current worki… | HIGH | 9.3 | Aug 27, 2010 |
| CVE-2010-1681 | Buffer overflow in VISIODWG.DLL before 10.0.6880.4 in Microsoft Office Visio allows user-assisted remote attackers to execute arbitrary code via a crafted DXF… | HIGH | 7.6 | May 5, 2010 |
Showing 1 to 25 of 54 CVEs