Skip to content
Noroxi

openoffice records

30 published records for vendor openoffice.

Researcher profile

Entered KEV
0 · 0%
Weaponized
1 · 3.3%
Pre-auth RCE
19
With a fix record
70%
Median publish → KEV
No record has entered KEV

All records

30 records
  • Heap-based buffer overflow in the OLE importer in OpenOffice.org before 2.4 allows remote attackers to cause a denial of service (crash) and

    CriticalCVSS 9.3WeaponizedEPSS 57%

    openoffice · openoffice.orgApr 17, 2008

  • HSQLDB before 1.8.0.9, as used in OpenOffice.org (OOo) 2 before 2.3.1, allows user-assisted remote attackers to execute arbitrary Java code

    CriticalCVSS 9.3No exploitEPSS 14%

    openoffice · openofficeDec 5, 2007

  • Unspecified vulnerability in OpenOffice.org (OOo) has unspecified impact and remote attack vectors, as demonstrated by a certain module in V

    CriticalCVSS 10.0No exploitEPSS 2%

    openoffice · openoffice.orgOct 6, 2009

  • CVE-2006-5870
    39Monitor

    Multiple integer overflows in OpenOffice.org (OOo) 2.0.4 and earlier, and possibly other versions before 2.1.0; and StarOffice 6 through 8;

    CriticalCVSS 9.3No exploitEPSS 8%

    openoffice · openofficeDec 31, 2006

  • CVE-2009-0259
    39Monitor

    The Word processor in OpenOffice.org 1.1.2 through 1.1.5 allows remote attackers to cause a denial of service (crash) and possibly execute a

    CriticalCVSS 9.3Proof of conceptEPSS 8%

    openoffice · openoffice.orgJan 22, 2009

  • CVE-2010-2935
    39Monitor

    simpress.bin in the Impress module in OpenOffice.org (OOo) 2.x and 3.x before 3.3 does not properly handle integer values associated with di

    CriticalCVSS 9.3No exploitEPSS 7%

    openoffice · openoffice.orgAug 25, 2010

  • CVE-2010-2936
    39Monitor

    Integer overflow in simpress.bin in the Impress module in OpenOffice.org (OOo) 2.x and 3.x before 3.3 allows remote attackers to cause a den

    CriticalCVSS 9.3No exploitEPSS 7%

    openoffice · openoffice.orgAug 25, 2010

  • CVE-2009-0201
    39Monitor

    Heap-based buffer overflow in OpenOffice.org (OOo) before 3.1.1 and StarOffice/StarSuite 7, 8, and 9 might allow remote attackers to execute

    CriticalCVSS 9.3No exploitEPSS 7%

    openoffice · openoffice.orgSep 2, 2009

  • CVE-2008-2238
    39Monitor

    Multiple integer overflows in OpenOffice.org (OOo) 2.x before 2.4.2 allow remote attackers to execute arbitrary code via crafted EMR records

    CriticalCVSS 9.3No exploitEPSS 7%

    openoffice · openoffice.orgOct 30, 2008

  • CVE-2009-0200
    39Monitor

    Integer underflow in OpenOffice.org (OOo) before 3.1.1 and StarOffice/StarSuite 7, 8, and 9 might allow remote attackers to execute arbitrar

    CriticalCVSS 9.3No exploitEPSS 7%

    openoffice · openoffice.orgSep 2, 2009

  • CVE-2007-0245
    39Monitor

    Heap-based buffer overflow in OpenOffice.org (OOo) 2.2.1 and earlier allows remote attackers to execute arbitrary code via a RTF file with a

    CriticalCVSS 9.3No exploitEPSS 7%

    openoffice · openofficeJun 12, 2007

  • CVE-2008-2237
    39Monitor

    Heap-based buffer overflow in OpenOffice.org (OOo) 2.x before 2.4.2 allows remote attackers to execute arbitrary code via a crafted WMF file

    CriticalCVSS 9.3No exploitEPSS 6%

    openoffice · openoffice.orgOct 30, 2008

  • CVE-2007-0238
    39Monitor

    Stack-based buffer overflow in filter\starcalc\scflt.cxx in the StarCalc parser in OpenOffice.org (OOo) Office Suite before 2.2, and 1.x bef

    CriticalCVSS 9.3No exploitEPSS 6%

    openoffice · openofficeMar 21, 2007

  • CVE-2008-2152
    39Monitor

    Integer overflow in the rtl_allocateMemory function in sal/rtl/source/alloc_global.c in OpenOffice.org (OOo) 2.0 through 2.4 allows remote a

    CriticalCVSS 9.3No exploitEPSS 6%

    openoffice · openoffice.orgJun 10, 2008

  • CVE-2007-0239
    38Monitor

    OpenOffice.org (OOo) Office Suite allows user-assisted remote attackers to execute arbitrary commands via shell metacharacters in a prepared

    CriticalCVSS 9.3No exploitEPSS 3%

    openoffice · openofficeMar 21, 2007

  • CVE-2009-3571
    37Monitor

    Unspecified vulnerability in OpenOffice.org (OOo) has unknown impact and client-side attack vector, as demonstrated by a certain module in V

    CriticalCVSS 9.3No exploitEPSS 1%

    openoffice · openoffice.orgOct 6, 2009

  • CVE-2006-3117
    31Monitor

    Heap-based buffer overflow in OpenOffice.org (aka StarOffice) 1.1.x up to 1.1.5 and 2.0.x before 2.0.3 allows user-assisted attackers to exe

    HighCVSS 7.6No exploitEPSS 4%

    openoffice · openofficeJun 30, 2006

  • CVE-2006-2199
    31Monitor

    Unspecified vulnerability in Java Applets in OpenOffice.org 1.1.x (aka StarOffice) up to 1.1.5 and 2.0.x before 2.0.3 allows user-assisted a

    HighCVSS 7.6No exploitEPSS 3%

    openoffice · openofficeJun 30, 2006

  • CVE-2006-2198
    31Monitor

    OpenOffice.org (aka StarOffice) 1.1.x up to 1.1.5 and 2.0.x before 2.0.3 allows user-assisted attackers to conduct unauthorized activities v

    HighCVSS 7.6No exploitEPSS 3%

    openoffice · openofficeJun 30, 2006

  • CVE-2008-3437
    31Monitor

    OpenOffice.org (OOo) before 2.1.0 does not properly verify the authenticity of updates, which allows man-in-the-middle attackers to execute

    HighCVSS 7.5No exploitEPSS 2%

    openoffice · openoffice.orgAug 1, 2008

  • CVE-2007-5746
    28Monitor

    Integer overflow in OpenOffice.org before 2.4 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary co

    MediumCVSS 6.8No exploitEPSS 5%

    openoffice · openoffice.orgApr 17, 2008

  • CVE-2007-5745
    28Monitor

    Multiple heap-based buffer overflows in OpenOffice.org before 2.4 allow remote attackers to cause a denial of service (crash) and possibly e

    MediumCVSS 6.8No exploitEPSS 4%

    openoffice · openofficeApr 17, 2008

  • CVE-2002-2210
    24Monitor

    The installation of OpenOffice 1.0.1 allows local users to overwrite files and possibly gain privileges via a symlink attack on the USERNAME

    MediumCVSS 6.2No exploitEPSS 0%

    openoffice · openofficeDec 31, 2002

  • CVE-2005-0941
    21Monitor

    The StgCompObjStream::Load function in OpenOffice.org OpenOffice 1.1.4 and earlier allocates memory based on 16 bit length values, but proce

    MediumCVSS 5.1No exploitEPSS 4%

    openoffice · openofficeMay 2, 2005

  • CVE-2006-6628
    18Monitor

    Integer overflow in OpenOffice.org (OOo) 2.1 allows user-assisted remote attackers to cause a denial of service (application crash) via a cr

    MediumCVSS 4.3Proof of conceptEPSS 4%

    openoffice · openofficeDec 18, 2006