Vulnerabilities (CVE)

Filtered by vendor Microsoft Subscribe
Filtered by product Outlook
Total 119 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2004-0284 1 Microsoft 3 Ie, Internet Explorer, Outlook 2025-04-03 5.0 MEDIUM N/A
Microsoft Internet Explorer 6.0, Outlook 2002, and Outlook 2003 allow remote attackers to cause a denial of service (CPU consumption), if "Do not save encrypted pages to disk" is disabled, via a web site or HTML e-mail that contains two null characters (%00) after the host name.
CVE-2002-2101 1 Microsoft 1 Outlook 2025-04-03 7.5 HIGH N/A
Microsoft Outlook 2002 allows remote attackers to execute arbitrary JavaScript code, even when scripting is disabled, via an "about:" or "javascript:" URI in the href attribute of an "a" tag.
CVE-2006-4868 1 Microsoft 5 Internet Explorer, Outlook, Windows 2000 and 2 more 2025-04-03 9.3 HIGH N/A
Stack-based buffer overflow in the Vector Graphics Rendering engine (vgx.dll), as used in Microsoft Outlook and Internet Explorer 6.0 on Windows XP SP2, and possibly other versions, allows remote attackers to execute arbitrary code via a Vector Markup Language (VML) file with a long fill parameter within a rect tag.
CVE-2023-33131 1 Microsoft 4 Office, Office Long Term Servicing Channel, Outlook and 1 more 2025-02-28 N/A 8.8 HIGH
Microsoft Outlook Remote Code Execution Vulnerability
CVE-2021-31949 1 Microsoft 3 365 Apps, Office, Outlook 2025-02-28 6.8 MEDIUM 7.3 HIGH
Microsoft Outlook Remote Code Execution Vulnerability
CVE-2025-21259 1 Microsoft 1 Outlook 2025-02-28 N/A 5.3 MEDIUM
Microsoft Outlook Spoofing Vulnerability
CVE-2025-21361 1 Microsoft 2 Office, Outlook 2025-01-17 N/A 7.8 HIGH
Microsoft Outlook Remote Code Execution Vulnerability
CVE-2024-26204 1 Microsoft 1 Outlook 2025-01-15 N/A 7.5 HIGH
Outlook for Android Information Disclosure Vulnerability
CVE-2024-20670 1 Microsoft 2 Outlook, Windows 2025-01-08 N/A 8.1 HIGH
Outlook for Windows Spoofing Vulnerability
CVE-2022-24480 1 Microsoft 1 Outlook 2025-01-02 N/A 6.3 MEDIUM
Outlook for Android Elevation of Privilege Vulnerability
CVE-2024-38020 1 Microsoft 4 365 Apps, Office, Office Long Term Servicing Channel and 1 more 2024-11-21 N/A 6.5 MEDIUM
Microsoft Outlook Spoofing Vulnerability
CVE-2024-30103 1 Microsoft 3 365 Apps, Office, Outlook 2024-11-21 N/A 8.8 HIGH
Microsoft Outlook Remote Code Execution Vulnerability
CVE-2024-21378 1 Microsoft 4 365 Apps, Office, Office Long Term Servicing Channel and 1 more 2024-11-21 N/A 8.8 HIGH
Microsoft Outlook Remote Code Execution Vulnerability
CVE-2023-36893 1 Microsoft 4 365 Apps, Office, Office Long Term Servicing Channel and 1 more 2024-11-21 N/A 6.5 MEDIUM
Microsoft Outlook Spoofing Vulnerability
CVE-2023-36763 1 Microsoft 4 365 Apps, Office, Office Long Term Servicing Channel and 1 more 2024-11-21 N/A 7.5 HIGH
Microsoft Outlook Information Disclosure Vulnerability
CVE-2022-35742 1 Microsoft 4 365 Apps, Office, Office Long Term Servicing Channel and 1 more 2024-11-21 N/A 7.5 HIGH
Microsoft Outlook Denial of Service Vulnerability
CVE-2021-31941 1 Microsoft 3 365 Apps, Office, Outlook 2024-11-21 6.8 MEDIUM 7.8 HIGH
Microsoft Office Graphics Remote Code Execution Vulnerability
CVE-2021-28452 1 Microsoft 3 365 Apps, Office, Outlook 2024-11-21 6.8 MEDIUM 7.1 HIGH
Microsoft Outlook Memory Corruption Vulnerability
CVE-2020-1349 1 Microsoft 3 365 Apps, Office, Outlook 2024-11-21 6.8 MEDIUM 7.8 HIGH
A remote code execution vulnerability exists in Microsoft Outlook software when it fails to properly handle objects in memory, aka 'Microsoft Outlook Remote Code Execution Vulnerability'.
CVE-2020-0760 1 Microsoft 10 Access, Excel, Office and 7 more 2024-11-21 6.8 MEDIUM 8.8 HIGH
A remote code execution vulnerability exists when Microsoft Office improperly loads arbitrary type libraries, aka 'Microsoft Office Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0991.