cve,link,title,description,vendor,products,score,severity,epss,cisa,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2024-38226,https://securityvulnerability.io/vulnerability/CVE-2024-38226,Publisher Security Feature Bypass Vulnerability,"A security feature bypass in Microsoft Publisher enables attackers to circumvent intended security mechanisms, potentially leading to unauthorized actions within the application. This vulnerability affects multiple versions of Microsoft Publisher, emphasizing the need for users to apply patches and updates provided by Microsoft to maintain the security integrity of their software. Comprehensive awareness and prompt action are crucial to mitigate risks associated with this vulnerability.",Microsoft,"Microsoft Office 2019,Microsoft Office Ltsc 2021,Microsoft Publisher 2016",7.3,HIGH,0.0005099999834783375,true,false,false,true,,false,false,2024-09-10T16:53:57.222Z,0 CVE-2024-20673,https://securityvulnerability.io/vulnerability/CVE-2024-20673,Microsoft Office Remote Code Execution Vulnerability,"A vulnerability exists in Microsoft Office where maliciously crafted documents can potentially allow an attacker to execute arbitrary code on a user's system. This occurs when a user opens a specially crafted Office file that can lead to unauthorized access and control over the affected system. The vulnerability highlights significant risks posed to users, emphasizing the necessity for prompt updates and security best practices to mitigate potential exploits.",Microsoft,"Microsoft Office 2019,Microsoft Office Ltsc 2021,Microsoft Excel 2016,Microsoft Office 2016,Microsoft Powerpoint 2016,Microsoft Visio 2016,Microsoft Word 2016,Microsoft Publisher 2016,Skype For Business 2016",7.8,HIGH,0.0005300000193528831,false,false,false,false,,false,false,2024-02-13T18:02:25.889Z,0 CVE-2023-28287,https://securityvulnerability.io/vulnerability/CVE-2023-28287,Microsoft Publisher Remote Code Execution Vulnerability,"A remote code execution vulnerability has been identified in Microsoft Publisher, which could allow an attacker to execute arbitrary code on an affected system. This vulnerability can be exploited by processing a specially crafted file, leading to potential unauthorized access to system resources or sensitive information. It is crucial for users to remain vigilant and apply the necessary updates to mitigate the associated risks.",Microsoft,"Microsoft Publisher 2016,Microsoft Publisher 2013 Service Pack 1,Microsoft Office Ltsc 2021,Microsoft 365 Apps For Enterprise,Microsoft Office 2019",7.8,HIGH,0.0012700000079348683,false,false,false,false,,false,false,2023-06-17T01:15:00.000Z,0 CVE-2023-28295,https://securityvulnerability.io/vulnerability/CVE-2023-28295,Microsoft Publisher Remote Code Execution Vulnerability,"A remote code execution vulnerability exists in Microsoft Publisher due to improper handling of objects in memory. An attacker who successfully exploits this vulnerability could execute arbitrary code on the affected system. This could allow the attacker to install programs, view, change, or delete data, or create new accounts with full user rights. It is essential for users to apply security updates to mitigate this risk.",Microsoft,"Microsoft Office 2019,Microsoft Publisher 2016,Microsoft Office Ltsc 2021,Microsoft Publisher 2013 Service Pack 1,Microsoft 365 Apps For Enterprise",7.8,HIGH,0.0012700000079348683,false,false,false,false,,false,false,2023-06-17T01:15:00.000Z,0 CVE-2022-29107,https://securityvulnerability.io/vulnerability/CVE-2022-29107,Microsoft Office Security Feature Bypass Vulnerability,Microsoft Office Security Feature Bypass Vulnerability,Microsoft,"Microsoft Office Ltsc 2021,Microsoft Office 2019,Microsoft 365 Apps For Enterprise,Microsoft Word 2016,Microsoft Publisher 2016,Microsoft Publisher 2013 Service Pack 1,Microsoft Word 2013 Service Pack 1",5.5,MEDIUM,0.0007800000021234155,false,false,false,false,,false,false,2022-05-10T20:34:10.000Z,0 CVE-2020-0760,https://securityvulnerability.io/vulnerability/CVE-2020-0760,,"A remote code execution vulnerability exists when Microsoft Office improperly loads arbitrary type libraries, aka 'Microsoft Office Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0991.",Microsoft,"Microsoft Project,Microsoft Office,Office 365 Proplus,Microsoft Excel,Microsoft Powerpoint,Microsoft Visio,Microsoft Word,Microsoft Publisher 2016 (32-bit Edition),Microsoft Publisher 2016 (64-bit Edition),Microsoft Access,Microsoft Outlook,Microsoft Publisher 2013 Service Pack 1 (32-bit Editions),Microsoft Publisher 2013 Service Pack 1 (64-bit Editions),Microsoft Publisher",8.8,HIGH,0.06233999878168106,false,false,false,false,,false,false,2020-04-15T15:12:40.000Z,0 CVE-2018-8245,https://securityvulnerability.io/vulnerability/CVE-2018-8245,,"A remote code execution vulnerability exists when Microsoft Publisher fails to utilize features that lock down the Local Machine zone when instantiating OLE objects, aka ""Microsoft Publisher Remote Code Execution Vulnerability."" This affects Microsoft Publisher.",Microsoft,Microsoft Publisher,7.8,HIGH,0.8078799843788147,false,false,false,false,,false,false,2018-06-14T12:00:00.000Z,0