Vulnerabilities (CVE)

Filtered by vendor Microsoft Subscribe
Filtered by product Powerpoint
Total 67 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-53761 1 Microsoft 4 365 Apps, Office, Office Long Term Servicing Channel and 1 more 2025-08-15 N/A 7.8 HIGH
Use after free in Microsoft Office PowerPoint allows an unauthorized attacker to execute code locally.
CVE-2025-49705 1 Microsoft 4 365 Apps, Office, Office Long Term Servicing Channel and 1 more 2025-07-16 N/A N/A
Heap-based buffer overflow in Microsoft Office PowerPoint allows an unauthorized attacker to execute code locally.
CVE-2025-49699 1 Microsoft 6 365 Apps, Office, Office Long Term Servicing Channel and 3 more 2025-07-15 N/A 7.0 HIGH
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2025-47175 1 Microsoft 4 365 Apps, Office, Office Long Term Servicing Channel and 1 more 2025-07-09 N/A N/A
Use after free in Microsoft Office PowerPoint allows an unauthorized attacker to execute code locally.
CVE-2015-2424 1 Microsoft 6 Excel Viewer, Office, Office Compatibility Pack and 3 more 2025-04-07 9.3 HIGH N/A
Microsoft PowerPoint 2007 SP3, Word 2007 SP3, PowerPoint 2010 SP2, Word 2010 SP2, PowerPoint 2013 SP1, Word 2013 SP1, and PowerPoint 2013 RT SP1 allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted Office document, aka "Microsoft Office Memory Corruption Vulnerability."
CVE-2010-2572 1 Microsoft 1 Powerpoint 2025-03-26 9.3 HIGH 7.8 HIGH
Buffer overflow in Microsoft PowerPoint 2002 SP3 and 2003 SP3 allows remote attackers to execute arbitrary code via a crafted PowerPoint 95 document, aka "PowerPoint Parsing Buffer Overflow Vulnerability."
CVE-2024-38171 1 Microsoft 4 365 Apps, Office, Office Long Term Servicing Channel and 1 more 2024-08-16 N/A 7.8 HIGH
Microsoft PowerPoint Remote Code Execution Vulnerability
CVE-2024-20673 1 Microsoft 7 Excel, Office, Powerpoint and 4 more 2024-06-11 N/A 7.8 HIGH
Microsoft Office Remote Code Execution Vulnerability
CVE-2020-17124 1 Microsoft 3 365 Apps, Office, Powerpoint 2023-12-31 9.3 HIGH 7.8 HIGH
Microsoft PowerPoint Remote Code Execution Vulnerability
CVE-2021-27056 1 Microsoft 3 365 Apps, Office, Powerpoint 2023-12-29 6.8 MEDIUM 7.8 HIGH
Microsoft PowerPoint Remote Code Execution Vulnerability
CVE-2000-0597 1 Microsoft 2 Excel, Powerpoint 2023-11-07 7.5 HIGH N/A
Microsoft Office 2000 (Excel and PowerPoint) and PowerPoint 97 are marked as safe for scripting, which allows remote attackers to force Internet Explorer or some email clients to save files to arbitrary locations via the Visual Basic for Applications (VBA) SaveAs function, aka the "Office HTML Script" vulnerability.
CVE-2022-26903 1 Microsoft 16 Excel, Excel Mobile, Powerpoint and 13 more 2023-06-29 9.3 HIGH 7.8 HIGH
Windows Graphics Component Remote Code Execution Vulnerability
CVE-2020-0760 1 Microsoft 10 Access, Excel, Office and 7 more 2021-07-21 6.8 MEDIUM 8.8 HIGH
A remote code execution vulnerability exists when Microsoft Office improperly loads arbitrary type libraries, aka 'Microsoft Office Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0991.
CVE-2019-1462 1 Microsoft 3 Office, Office 365 Proplus, Powerpoint 2020-08-24 9.3 HIGH 7.8 HIGH
A remote code execution vulnerability exists in Microsoft PowerPoint software when the software fails to properly handle objects in memory, aka 'Microsoft PowerPoint Remote Code Execution Vulnerability'.
CVE-2018-8628 1 Microsoft 9 Office, Office 365 Proplus, Office Compatibility Pack and 6 more 2020-08-24 9.3 HIGH 7.8 HIGH
A remote code execution vulnerability exists in Microsoft PowerPoint software when the software fails to properly handle objects in memory, aka "Microsoft PowerPoint Remote Code Execution Vulnerability." This affects Microsoft Office, Office 365 ProPlus, Microsoft PowerPoint, Microsoft SharePoint, Microsoft PowerPoint Viewer, Office Online Server, Microsoft SharePoint Server.
CVE-2018-8376 1 Microsoft 1 Powerpoint 2020-08-24 9.3 HIGH 8.8 HIGH
A remote code execution vulnerability exists in Microsoft PowerPoint software when the software fails to properly handle objects in memory, aka "Microsoft PowerPoint Remote Code Execution Vulnerability." This affects Microsoft PowerPoint.
CVE-2018-8501 1 Microsoft 4 Office, Office 365 Proplus, Powerpoint and 1 more 2019-10-03 9.3 HIGH 8.8 HIGH
A remote code execution vulnerability exists in Microsoft PowerPoint software when the software fails to properly handle objects in Protected View, aka "Microsoft PowerPoint Remote Code Execution Vulnerability." This affects Office 365 ProPlus, PowerPoint Viewer, Microsoft Office, Microsoft PowerPoint.
CVE-2015-2423 1 Microsoft 15 Excel, Internet Explorer, Office and 12 more 2019-05-15 4.3 MEDIUM N/A
Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, Windows 10, Excel 2007 SP3, PowerPoint 2007 SP3, Visio 2007 SP3, Word 2007 SP3, Office 2010 SP2, Excel 2010 SP2, PowerPoint 2010 SP2, Visio 2010 SP2, Word 2010 SP2, Excel 2013 SP1, PowerPoint 2013 SP1, Visio 2013 SP1, Word 2013 SP1, Excel 2013 RT SP1, PowerPoint 2013 RT SP1, Visio 2013 RT SP1, Word 2013 RT SP1, and Internet Explorer 7 through 11 allow remote attackers to gain privileges and obtain sensitive information via a crafted command-line parameter to an Office application or Notepad, as demonstrated by a transition from Low Integrity to Medium Integrity, aka "Unsafe Command Line Parameter Passing Vulnerability."
CVE-2004-0200 1 Microsoft 24 .net Framework, Digital Image Pro, Digital Image Suite and 21 more 2018-10-30 9.3 HIGH N/A
Buffer overflow in the JPEG (JPG) parsing engine in the Microsoft Graphic Device Interface Plus (GDI+) component, GDIPlus.dll, allows remote attackers to execute arbitrary code via a JPEG image with a small JPEG COM field length that is normalized to a large integer length before a memory copy operation.
CVE-2006-3655 1 Microsoft 1 Powerpoint 2018-10-18 5.1 MEDIUM N/A
Unspecified vulnerability in mso.dll in Microsoft PowerPoint 2003 allows user-assisted attackers to execute arbitrary code via a crafted PowerPoint file. NOTE: due to the lack of available details as of 20060717, it is unclear how this is related to CVE-2006-3656, CVE-2006-3660, and CVE-2006-3590, although it is possible that they are all different.