cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2024-20677,https://securityvulnerability.io/vulnerability/CVE-2024-20677,Microsoft Office Remote Code Execution Vulnerability,"A security vulnerability in Microsoft Office products allows for potential remote code execution through FBX file insertion. In response to this risk, Microsoft has disabled the ability to insert FBX files in Office applications, including Word, Excel, PowerPoint, and Outlook, on both Windows and Mac platforms. This change affects versions such as Office 2019, Office 2021, Office LTSC for Mac 2021, and Microsoft 365. As of the January 9, 2024 security update, the option to insert FBX files has also been removed from 3D Viewer. Notably, existing 3D models in Office documents remain functional unless the 'Link to File' option was utilized at the time of insertion.",Microsoft,"3d Viewer,Microsoft Office 2019,Microsoft 365 Apps For Enterprise,Microsoft Office Ltsc For Mac 2021,Microsoft Office Ltsc 2021",7.8,HIGH,0.0010400000028312206,false,,true,false,false,,,false,false,,2024-01-09T18:15:00.000Z,0 CVE-2023-36739,https://securityvulnerability.io/vulnerability/CVE-2023-36739,3D Viewer Remote Code Execution Vulnerability,"A vulnerability in the 3D Viewer application allows remote code execution, potentially enabling an attacker to execute arbitrary code on the affected system. This could result in unauthorized access to sensitive data or control over the device. Users are encouraged to apply security updates promptly to mitigate any risks associated with this issue.",Microsoft,3d Viewer,7.8,HIGH,0.0015999999595806003,false,,false,false,false,,,false,false,,2023-09-12T17:15:00.000Z,0 CVE-2023-36760,https://securityvulnerability.io/vulnerability/CVE-2023-36760,3D Viewer Remote Code Execution Vulnerability,"The 3D Viewer application from Microsoft is susceptible to a remote code execution vulnerability that allows attackers to execute arbitrary code on a victim's system. If successfully exploited, this flaw can lead to unauthorized access and manipulation of system resources, posing significant risks to user data and overall system integrity. Affected users are urged to stay informed and apply any available updates to mitigate potential threats.",Microsoft,3d Viewer,7.8,HIGH,0.0015999999595806003,false,,false,false,false,,,false,false,,2023-09-12T17:15:00.000Z,0 CVE-2023-36740,https://securityvulnerability.io/vulnerability/CVE-2023-36740,3D Viewer Remote Code Execution Vulnerability,"The 3D Viewer application, developed by Microsoft, is impacted by a vulnerability that allows remote code execution. This flaw may enable an attacker to execute arbitrary code on a targeted system, potentially compromising sensitive data and system integrity. Users are advised to apply the latest security updates to mitigate any risks associated with this vulnerability.",Microsoft,3d Viewer,7.8,HIGH,0.0015999999595806003,false,,false,false,false,,,false,false,,2023-09-12T17:15:00.000Z,0 CVE-2021-43209,https://securityvulnerability.io/vulnerability/CVE-2021-43209,3D Viewer Remote Code Execution Vulnerability,3D Viewer Remote Code Execution Vulnerability,Microsoft,3d Viewer,7.8,HIGH,0.048990000039339066,false,,false,false,false,,,false,false,,2021-11-10T00:47:49.000Z,0 CVE-2021-43208,https://securityvulnerability.io/vulnerability/CVE-2021-43208,3D Viewer Remote Code Execution Vulnerability,3D Viewer Remote Code Execution Vulnerability,Microsoft,3d Viewer,7.8,HIGH,0.020020000636577606,false,,false,false,false,,,false,false,,2021-11-10T00:47:48.000Z,0 CVE-2021-31942,https://securityvulnerability.io/vulnerability/CVE-2021-31942,3D Viewer Remote Code Execution Vulnerability,3D Viewer Remote Code Execution Vulnerability,Microsoft,3d Viewer,7.8,HIGH,0.01664000004529953,false,,false,false,false,,,false,false,,2021-06-08T23:15:00.000Z,0 CVE-2021-31944,https://securityvulnerability.io/vulnerability/CVE-2021-31944,3D Viewer Information Disclosure Vulnerability,3D Viewer Information Disclosure Vulnerability,Microsoft,3d Viewer,5,MEDIUM,0.30164000391960144,false,,false,false,false,,,false,false,,2021-06-08T23:15:00.000Z,0 CVE-2021-31943,https://securityvulnerability.io/vulnerability/CVE-2021-31943,3D Viewer Remote Code Execution Vulnerability,3D Viewer Remote Code Execution Vulnerability,Microsoft,3d Viewer,7.8,HIGH,0.01664000004529953,false,,false,false,false,,,false,false,,2021-06-08T23:15:00.000Z,0 CVE-2020-16918,https://securityvulnerability.io/vulnerability/CVE-2020-16918,Base3D Remote Code Execution Vulnerability,"

A remote code execution vulnerability exists when the Base3D rendering engine improperly handles memory.

An attacker who successfully exploited the vulnerability would gain execution on a victim system.

The security update addresses the vulnerability by correcting how the Base3D rendering engine handles memory.

",Microsoft,"Microsoft 365 Apps For Enterprise,3d Viewer",7.8,HIGH,0.022099999710917473,false,,false,false,false,,,false,false,,2020-10-16T23:15:00.000Z,0 CVE-2020-17003,https://securityvulnerability.io/vulnerability/CVE-2020-17003,Base3D Remote Code Execution Vulnerability,"

A remote code execution vulnerability exists when the Base3D rendering engine improperly handles memory.

An attacker who successfully exploited the vulnerability would gain execution on a victim system.

The security update addresses the vulnerability by correcting how the Base3D rendering engine handles memory.

",Microsoft,3d Viewer,7.8,HIGH,0.021619999781250954,false,,false,false,false,,,false,false,,2020-10-16T23:15:00.000Z,0