Description
Multiple vulnerabilities were found in Microsoft Office. Malicious users can exploit these vulnerabilities to bypass security restrictions, execute arbitrary code, gain privileges, obtain sensitive information, spoof user interface.
Below is a complete list of vulnerabilities:
- A spoofing vulnerability in Microsoft Office SharePoint can be exploited remotely to spoof user interface.
- A spoofing vulnerability in Microsoft SharePoint Server can be exploited remotely to spoof user interface.
- A remote code execution vulnerability in Microsoft Word can be exploited remotely to execute arbitrary code.
- An elevation of privilege vulnerability in Microsoft SharePoint Server can be exploited remotely to gain privileges.
- An information disclosure vulnerability in Microsoft SharePoint Server can be exploited remotely to obtain sensitive information.
- An information disclosure vulnerability in Microsoft Office Graphics Component can be exploited remotely to obtain sensitive information.
- A spoofing vulnerability in Microsoft Outlook can be exploited remotely to spoof user interface.
- A tampering vulnerability in Microsoft SharePoint Server can be exploited remotely to spoof user interface.
- A remote code execution vulnerability in Microsoft Office Graphics Component can be exploited remotely to execute arbitrary code.
- A remote code execution vulnerability in Microsoft SharePoint Server can be exploited remotely to execute arbitrary code.
- A remote code execution vulnerability in Microsoft Office can be exploited remotely to execute arbitrary code.
- A remote code execution vulnerability in Microsoft Office Word can be exploited remotely to execute arbitrary code.
- An information disclosure vulnerability in Microsoft Office Word can be exploited remotely to obtain sensitive information.
- An information disclosure vulnerability in Microsoft Office can be exploited remotely to obtain sensitive information.
- A remote code execution vulnerability in Microsoft Access can be exploited remotely to execute arbitrary code.
- An elevation of privilege vulnerability in Microsoft OneDrive for MacOS can be exploited remotely to gain privileges.
- A spoofing vulnerability in Microsoft Teams for Android and iOS can be exploited remotely to spoof user interface.
- A remote code execution vulnerability in Microsoft Teams can be exploited remotely to execute arbitrary code.
- An information disclosure vulnerability in Microsoft Teams iOS can be exploited remotely to obtain sensitive information.
- A remote code execution vulnerability in Microsoft Excel can be exploited remotely to execute arbitrary code.
- An elevation of privilege vulnerability in Microsoft Office can be exploited remotely to gain privileges.
- An information disclosure vulnerability in Microsoft Excel can be exploited remotely to obtain sensitive information.
- An information disclosure vulnerability in Powerpoint can be exploited remotely to obtain sensitive information.
- An information disclosure vulnerability in Microsoft Word can be exploited remotely to obtain sensitive information.
- A remote code execution vulnerability in Microsoft PowerPoint can be exploited remotely to obtain sensitive information.
- A remote code execution vulnerability in Microsoft SharePoint can be exploited remotely to execute arbitrary code.
- An elevation of privilege vulnerability in Microsoft SharePoint can be exploited remotely to gain privileges.
- A remote code execution vulnerability in Microsoft Outlook can be exploited remotely to execute arbitrary code.
Original advisories
- CVE-2026-58639
- CVE-2026-58651
- CVE-2026-62829
- CVE-2026-62837
- CVE-2026-62839
- CVE-2026-62842
- CVE-2026-62882
- CVE-2026-62917
- CVE-2026-63512
- CVE-2026-63514
- CVE-2026-63516
- CVE-2026-63517
- CVE-2026-63520
- CVE-2026-63521
- CVE-2026-63524
- CVE-2026-63527
- CVE-2026-63528
- CVE-2026-63529
- CVE-2026-63530
- CVE-2026-63531
- CVE-2026-63533
- CVE-2026-64897
- CVE-2026-64899
- CVE-2026-64900
- CVE-2026-64901
- CVE-2026-64902
- CVE-2026-64904
- CVE-2026-64905
- CVE-2026-64906
- CVE-2026-64908
- CVE-2026-64912
- CVE-2026-64914
- CVE-2026-64915
- CVE-2026-64916
- CVE-2026-64917
- CVE-2026-64919
- CVE-2026-64920
- CVE-2026-64922
- CVE-2026-65656
- CVE-2026-65658
- CVE-2026-65660
- CVE-2026-65661
- CVE-2026-65663
- CVE-2026-65680
- CVE-2026-65767
- CVE-2026-65768
- CVE-2026-65769
- CVE-2026-65807
- CVE-2026-66805
- CVE-2026-66806
- CVE-2026-66808
- CVE-2026-66809
- CVE-2026-66810
- CVE-2026-68792
- CVE-2026-68793
- CVE-2026-68795
- CVE-2026-68796
- CVE-2026-68797
- CVE-2026-68798
- CVE-2026-68799
- CVE-2026-68800
- CVE-2026-68801
- CVE-2026-68802
- CVE-2026-68803
- CVE-2026-68805
- CVE-2026-68806
- CVE-2026-68807
- CVE-2026-68808
- CVE-2026-68809
- CVE-2026-68810
- CVE-2026-68811
- CVE-2026-68812
- CVE-2026-68813
- CVE-2026-68814
- CVE-2026-68815
- CVE-2026-68817
- CVE-2026-70306
- CVE-2026-70310
- CVE-2026-70311
- CVE-2026-70312
- CVE-2026-70313
- CVE-2026-70314
- CVE-2026-70315
- CVE-2026-70316
- CVE-2026-70317
- CVE-2026-70318
- CVE-2026-70319
- CVE-2026-70320
- CVE-2026-70321
- CVE-2026-70322
- CVE-2026-70323
- CVE-2026-70324
- CVE-2026-70325
- CVE-2026-70326
- CVE-2026-70327
- CVE-2026-70328
- CVE-2026-70329
- CVE-2026-70355
- CVE-2026-62827
- CVE-2026-63513
- CVE-2026-63515
- CVE-2026-63518
- CVE-2026-63519
- CVE-2026-63525
- CVE-2026-63526
- CVE-2026-63532
- CVE-2026-64898
- CVE-2026-64903
- CVE-2026-64907
- CVE-2026-64909
- CVE-2026-64910
- CVE-2026-64911
- CVE-2026-64921
- CVE-2026-65657
- CVE-2026-65664
- CVE-2026-65665
- CVE-2026-66807
- CVE-2026-68794
- CVE-2026-68804
- CVE-2026-68816
- CVE-2026-70130
Exploitation
Public exploits exist for this vulnerability.
Malware exists for this vulnerability. Usually such malware is classified as Exploit. More details.
Related products
- Microsoft-Access
- Microsoft-Office
- Microsoft-Outlook
- Microsoft-Excel
- Microsoft-Word
- Microsoft-SharePoint
- OneDrive
- Microsoft-365
CVE list
- CVE-2026-57105 unknown
- CVE-2026-58639 high
- CVE-2026-58651 critical
- CVE-2026-62827 critical
- CVE-2026-62829 unknown
- CVE-2026-62837 unknown
- CVE-2026-62839 high
- CVE-2026-62842 high
- CVE-2026-62882 warning
- CVE-2026-62917 warning
- CVE-2026-63512 high
- CVE-2026-63513 critical
- CVE-2026-63514 critical
- CVE-2026-63515 critical
- CVE-2026-63516 high
- CVE-2026-63517 high
- CVE-2026-63518 critical
- CVE-2026-63519 critical
- CVE-2026-63520 critical
- CVE-2026-63521 high
- CVE-2026-63524 high
- CVE-2026-63525 critical
- CVE-2026-63526 critical
- CVE-2026-63527 critical
- CVE-2026-63528 high
- CVE-2026-63529 high
- CVE-2026-63530 high
- CVE-2026-63531 high
- CVE-2026-63532 critical
- CVE-2026-63533 critical
- CVE-2026-64897 unknown
- CVE-2026-64898 critical
- CVE-2026-64899 high
- CVE-2026-64900 high
- CVE-2026-64901 unknown
- CVE-2026-64902 unknown
- CVE-2026-64903 critical
- CVE-2026-64904 critical
- CVE-2026-64905 critical
- CVE-2026-64906 critical
- CVE-2026-64907 critical
- CVE-2026-64908 critical
- CVE-2026-64909 critical
- CVE-2026-64910 critical
- CVE-2026-64911 critical
- CVE-2026-64912 critical
- CVE-2026-64914 critical
- CVE-2026-64915 critical
- CVE-2026-64916 high
- CVE-2026-64917 high
- CVE-2026-64919 critical
- CVE-2026-64920 critical
- CVE-2026-64921 critical
- CVE-2026-64922 high
- CVE-2026-65656 critical
- CVE-2026-65657 critical
- CVE-2026-65658 critical
- CVE-2026-65660 critical
- CVE-2026-65661 critical
- CVE-2026-65663 critical
- CVE-2026-65664 critical
- CVE-2026-65665 critical
- CVE-2026-65767 critical
- CVE-2026-65768 critical
- CVE-2026-65769 critical
- CVE-2026-65807 critical
- CVE-2026-66805 critical
- CVE-2026-66806 high
- CVE-2026-66807 critical
- CVE-2026-66808 critical
- CVE-2026-66809 high
- CVE-2026-66810 high
- CVE-2026-68792 critical
- CVE-2026-68793 critical
- CVE-2026-68794 critical
- CVE-2026-68795 critical
- CVE-2026-68796 critical
- CVE-2026-68797 high
- CVE-2026-68798 critical
- CVE-2026-68799 high
- CVE-2026-68800 critical
- CVE-2026-68801 critical
- CVE-2026-68802 high
- CVE-2026-68803 critical
- CVE-2026-68804 critical
- CVE-2026-68805 critical
- CVE-2026-68806 critical
- CVE-2026-68807 critical
- CVE-2026-68808 high
- CVE-2026-68809 high
- CVE-2026-68810 critical
- CVE-2026-68811 critical
- CVE-2026-68812 critical
- CVE-2026-68813 high
- CVE-2026-68814 critical
- CVE-2026-68815 critical
- CVE-2026-68816 critical
- CVE-2026-68817 critical
- CVE-2026-70130 critical
- CVE-2026-70306 critical
- CVE-2026-70310 high
- CVE-2026-70311 critical
- CVE-2026-70312 high
- CVE-2026-70313 critical
- CVE-2026-70314 high
- CVE-2026-70315 high
- CVE-2026-70316 high
- CVE-2026-70317 high
- CVE-2026-70318 high
- CVE-2026-70319 high
- CVE-2026-70320 high
- CVE-2026-70321 critical
- CVE-2026-70322 high
- CVE-2026-70323 high
- CVE-2026-70324 critical
- CVE-2026-70325 high
- CVE-2026-70326 critical
- CVE-2026-70327 high
- CVE-2026-70328 high
- CVE-2026-70329 critical
- CVE-2026-70355 critical
- CVE-2026-65680 high
KB list
- 5002884
- 5002755
- 5002791
- 5002795
- 5002813
- 5002832
- 5002893
- 5002894
- 5002896
- 5002897
- 5002899
- 5002900
- 5002901
- 5002902
- 5002903
- 5002905
- 5002906
Read more
Find out the statistics of the vulnerabilities spreading in your region on statistics.securelist.com
Found an inaccuracy in the description of this vulnerability? Let us know!