cve,link,title,description,vendor,products,score,severity,epss,cisa,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2024-20677,https://securityvulnerability.io/vulnerability/CVE-2024-20677,Microsoft Office Remote Code Execution Vulnerability,"A security vulnerability in Microsoft Office products allows for potential remote code execution through FBX file insertion. In response to this risk, Microsoft has disabled the ability to insert FBX files in Office applications, including Word, Excel, PowerPoint, and Outlook, on both Windows and Mac platforms. This change affects versions such as Office 2019, Office 2021, Office LTSC for Mac 2021, and Microsoft 365. As of the January 9, 2024 security update, the option to insert FBX files has also been removed from 3D Viewer. Notably, existing 3D models in Office documents remain functional unless the 'Link to File' option was utilized at the time of insertion.",Microsoft,"3d Viewer,Microsoft Office 2019,Microsoft 365 Apps For Enterprise,Microsoft Office Ltsc For Mac 2021,Microsoft Office Ltsc 2021",7.8,HIGH,0.0008699999889358878,false,true,false,false,,false,false,2024-01-09T18:15:00.000Z,0 CVE-2023-36739,https://securityvulnerability.io/vulnerability/CVE-2023-36739,3D Viewer Remote Code Execution Vulnerability,3D Viewer Remote Code Execution Vulnerability,Microsoft,3d Viewer,7.8,HIGH,0.002240000059828162,false,false,false,false,,false,false,2023-09-12T17:15:00.000Z,0 CVE-2023-36760,https://securityvulnerability.io/vulnerability/CVE-2023-36760,3D Viewer Remote Code Execution Vulnerability,3D Viewer Remote Code Execution Vulnerability,Microsoft,3d Viewer,7.8,HIGH,0.002240000059828162,false,false,false,false,,false,false,2023-09-12T17:15:00.000Z,0 CVE-2023-36740,https://securityvulnerability.io/vulnerability/CVE-2023-36740,3D Viewer Remote Code Execution Vulnerability,3D Viewer Remote Code Execution Vulnerability,Microsoft,3d Viewer,7.8,HIGH,0.002240000059828162,false,false,false,false,,false,false,2023-09-12T17:15:00.000Z,0 CVE-2021-43209,https://securityvulnerability.io/vulnerability/CVE-2021-43209,3D Viewer Remote Code Execution Vulnerability,3D Viewer Remote Code Execution Vulnerability,Microsoft,3d Viewer,7.8,HIGH,0.01638999953866005,false,false,false,false,,false,false,2021-11-10T00:47:49.000Z,0 CVE-2021-43208,https://securityvulnerability.io/vulnerability/CVE-2021-43208,3D Viewer Remote Code Execution Vulnerability,3D Viewer Remote Code Execution Vulnerability,Microsoft,3d Viewer,7.8,HIGH,0.02127999998629093,false,false,false,false,,false,false,2021-11-10T00:47:48.000Z,0 CVE-2021-31942,https://securityvulnerability.io/vulnerability/CVE-2021-31942,3D Viewer Remote Code Execution Vulnerability,3D Viewer Remote Code Execution Vulnerability,Microsoft,3d Viewer,7.8,HIGH,0.016739999875426292,false,false,false,false,,false,false,2021-06-08T23:15:00.000Z,0 CVE-2021-31944,https://securityvulnerability.io/vulnerability/CVE-2021-31944,3D Viewer Information Disclosure Vulnerability,3D Viewer Information Disclosure Vulnerability,Microsoft,3d Viewer,5,MEDIUM,0.37369999289512634,false,false,false,false,,false,false,2021-06-08T23:15:00.000Z,0 CVE-2021-31943,https://securityvulnerability.io/vulnerability/CVE-2021-31943,3D Viewer Remote Code Execution Vulnerability,3D Viewer Remote Code Execution Vulnerability,Microsoft,3d Viewer,7.8,HIGH,0.016739999875426292,false,false,false,false,,false,false,2021-06-08T23:15:00.000Z,0 CVE-2020-16918,https://securityvulnerability.io/vulnerability/CVE-2020-16918,Base3D Remote Code Execution Vulnerability,"
A remote code execution vulnerability exists when the Base3D rendering engine improperly handles memory.
An attacker who successfully exploited the vulnerability would gain execution on a victim system.
The security update addresses the vulnerability by correcting how the Base3D rendering engine handles memory.
",Microsoft,"Microsoft 365 Apps For Enterprise,3d Viewer",7.8,HIGH,0.022099999710917473,false,false,false,false,,false,false,2020-10-16T23:15:00.000Z,0 CVE-2020-17003,https://securityvulnerability.io/vulnerability/CVE-2020-17003,Base3D Remote Code Execution Vulnerability,"A remote code execution vulnerability exists when the Base3D rendering engine improperly handles memory.
An attacker who successfully exploited the vulnerability would gain execution on a victim system.
The security update addresses the vulnerability by correcting how the Base3D rendering engine handles memory.
",Microsoft,3d Viewer,7.8,HIGH,0.01640000008046627,false,false,false,false,,false,false,2020-10-16T23:15:00.000Z,0