Описание
Multiple vulnerabilities were found in Microsoft Office. Malicious users can exploit these vulnerabilities to obtain sensitive information, cause denial of service, execute arbitrary code, bypass security restrictions, spoof user interface.
Below is a complete list of vulnerabilities:
- An information disclosure vulnerability in Microsoft Excel can be exploited remotely to obtain sensitive information.
- An information disclosure vulnerability in Microsoft Office can be exploited remotely to obtain sensitive information.
- A denial of service vulnerability in Microsoft Teams can be exploited remotely to cause denial of service.
- A remote code execution vulnerability in Microsoft Office Visio can be exploited remotely to execute arbitrary code.
- A security feature bypass in Microsoft SharePoint Server can be exploited remotely to bypass security restrictions.
- A security feature bypass vulnerability in Microsoft Outlook for Mac can be exploited remotely to bypass security restrictions.
- A remote code execution vulnerability in Microsoft Office Graphics can be exploited remotely to execute arbitrary code.
- A remote code execution vulnerability in Microsoft SharePoint Server can be exploited remotely to execute arbitrary code.
- A security feature bypass vulnerability in Microsoft OneDrive for Android can be exploited remotely to bypass security restrictions.
- A spoofing vulnerability in Microsoft SharePoint Server can be exploited remotely to spoof user interface.
- A remote code execution vulnerability in Microsoft Office ClickToRun can be exploited remotely to execute arbitrary code.
Первичный источник обнаружения
- CVE-2022-22716
CVE-2022-23252
CVE-2022-21965
CVE-2022-21988
CVE-2022-21968
CVE-2022-23280
CVE-2022-22003
CVE-2022-22005
CVE-2022-23255
CVE-2022-21987
CVE-2022-22004
Связанные продукты
Список CVE
- CVE-2022-22716 warning
- CVE-2022-23252 warning
- CVE-2022-21965 warning
- CVE-2022-21988 high
- CVE-2022-21968 warning
- CVE-2022-23280 warning
- CVE-2022-22003 high
- CVE-2022-22005 high
- CVE-2022-23255 warning
- CVE-2022-21987 high
- CVE-2022-22004 high
Список KB
Смотрите также
Узнай статистику распространения уязвимостей в своем регионе statistics.securelist.com
Нашли неточность в описании этой уязвимости? Дайте нам знать!