İçeriğe atla
Noroxi

libreoffice kayıtları

libreoffice üreticisine ait 71 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
3 · %4,2
Pre-auth RCE
17
Düzeltme kaydı olan
%91,5
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

71 kayıt
  • CVE-2019-9851
    62Bu hafta

    LibreLogo global-event script execution

    KritikCVSS 9,8SilahlaştırılmışEPSS %78

    libreoffice · libreoffice15 Ağu 2019

  • CVE-2018-16858
    59Planlayın

    It was found that libreoffice before versions 6.0.7 and 6.1.3 was vulnerable to a directory traversal attack which could be used to execute

    KritikCVSS 9,8SilahlaştırılmışEPSS %67

    libreoffice · libreoffice25 Mar 2019

  • CVE-2018-10583
    54Planlayın

    An information disclosure vulnerability occurs when LibreOffice 6.0.3 and Apache OpenOffice Writer 4.1.5 automatically process and initiate

    YüksekCVSS 7,5SilahlaştırılmışEPSS %78

    libreoffice · libreoffice1 May 2018

  • CVE-2019-9848
    48Planlayın

    LibreOffice has a feature where documents can specify that pre-installed scripts can be executed on various document events such as mouse-ov

    KritikCVSS 9,8İstismar yokEPSS %29

    libreoffice · libreoffice17 Tem 2019

  • CVE-2018-6871
    46Planlayın

    LibreOffice before 5.4.5 and 6.x before 6.0.1 allows remote attackers to read arbitrary files via =WEBSERVICE calls in a document, which use

    KritikCVSS 9,8Kavram kanıtıEPSS %23

    libreoffice · libreoffice9 Şub 2018

  • CVE-2023-1183
    41Planlayın

    Arbitrary file write

    OrtaCVSS 5,5İstismar yokEPSS %65

    libreoffice · libreoffice10 Tem 2023

  • CVE-2014-3524
    41Planlayın

    Apache OpenOffice before 4.1.1 allows remote attackers to execute arbitrary commands and possibly have other unspecified impact via a crafte

    KritikCVSS 9,3İstismar yokEPSS %15

    apache · openoffice26 Ağu 2014

  • CVE-2014-0247
    41Planlayın

    LibreOffice 4.2.4 executes unspecified VBA macros automatically, which has unspecified impact and attack vectors, possibly related to doc/do

    KritikCVSS 10,0İstismar yokEPSS %4

    libreoffice · libreoffice3 Tem 2014

  • CVE-2017-7870
    40Planlayın

    LibreOffice before 2017-01-02 has an out-of-bounds write caused by a heap-based buffer overflow related to the tools::Polygon::Insert functi

    KritikCVSS 9,8İstismar yokEPSS %4

    libreoffice · libreoffice14 Nis 2017

  • CVE-2016-10327
    40Planlayın

    LibreOffice before 2016-12-22 has an out-of-bounds write caused by a heap-based buffer overflow related to the EnhWMFReader::ReadEnhWMF func

    KritikCVSS 9,8İstismar yokEPSS %4

    libreoffice · libreoffice14 Nis 2017

  • CVE-2017-7856
    40Planlayın

    LibreOffice before 2017-03-11 has an out-of-bounds write caused by a heap-based buffer overflow in the SVMConverter::ImplConvertFromSVM1 fun

    KritikCVSS 9,8İstismar yokEPSS %3

    libreoffice · libreoffice14 Nis 2017

  • CVE-2019-9850
    40Planlayın

    Insufficient url validation allowing LibreLogo script execution

    KritikCVSS 9,8İstismar yokEPSS %3

    libreoffice · libreoffice15 Ağu 2019

  • CVE-2019-9855
    40Planlayın

    Windows 8.3 path equivalence handling flaw allows LibreLogo script execution

    KritikCVSS 9,8İstismar yokEPSS %3

    libreoffice · libreoffice6 Eyl 2019

  • CVE-2017-7882
    40Planlayın

    LibreOffice before 2017-03-14 has an out-of-bounds write related to the HWPFile::TagsRead function in hwpfilter/source/hwpfile.cxx.

    KritikCVSS 9,8İstismar yokEPSS %2

    libreoffice · libreoffice15 Nis 2017

  • CVE-2018-14939
    40Planlayın

    The get_app_path function in desktop/unx/source/start.c in LibreOffice through 6.0.5 mishandles the realpath function in certain environment

    KritikCVSS 9,8İstismar yokEPSS %2

    libreoffice · libreoffice5 Ağu 2018

  • CVE-2017-8358
    40Planlayın

    LibreOffice before 2017-03-17 has an out-of-bounds write caused by a heap-based buffer overflow related to the ReadJPEG function in vcl/sour

    KritikCVSS 9,8İstismar yokEPSS %2

    libreoffice · libreoffice30 Nis 2017

  • CVE-2024-5261
    40Planlayın

    TLS certificate are not properly verified when utilizing LibreOfficeKit

    KritikCVSS 10,0İstismar yokEPSS %0

    libreoffice · libreoffice25 Haz 2024

  • CVE-2011-2685
    39İzleyin

    Stack-based buffer overflow in the Lotus Word Pro import filter in LibreOffice before 3.3.3 allows remote attackers to execute arbitrary cod

    KritikCVSS 9,3İstismar yokEPSS %7

    libreoffice · libreoffice21 Tem 2011

  • CVE-2021-25631
    37İzleyin

    denylist of executable filename extensions possible to bypass under windows

    YüksekCVSS 8,8İstismar yokEPSS %5

    libreoffice · libreoffice3 May 2021

  • CVE-2022-26307
    35İzleyin

    LibreOffice supports the storage of passwords for web connections in the user’s configuration database.

    YüksekCVSS 8,8İstismar yokEPSS %1

    libreoffice · libreoffice25 Tem 2022

  • CVE-2023-6185
    35İzleyin

    Improper input validation enabling arbitrary Gstreamer pipeline injection

    YüksekCVSS 8,8İstismar yokEPSS %1

    libreoffice · libreoffice11 Ara 2023

  • CVE-2023-6186
    35İzleyin

    Link targets allow arbitrary script execution

    YüksekCVSS 8,8İstismar yokEPSS %1

    libreoffice · libreoffice11 Ara 2023

  • CVE-2012-1149
    34İzleyin

    Integer overflow in the vclmi.dll module in OpenOffice.org (OOo) 3.3, 3.4 Beta, and possibly earlier, and LibreOffice before 3.5.3, allows r

    YüksekCVSS 7,5İstismar yokEPSS %14

    libreoffice · libreoffice21 Haz 2012

  • CVE-2012-2665
    32İzleyin

    Multiple heap-based buffer overflows in the XML manifest encryption tag parsing functionality in OpenOffice.org and LibreOffice before 3.5.5

    YüksekCVSS 7,5İstismar yokEPSS %7

    libreoffice · libreoffice6 Ağu 2012

  • CVE-2014-3693
    32İzleyin

    Use-after-free vulnerability in the socket manager of Impress Remote in LibreOffice 4.x before 4.2.7 and 4.3.x before 4.3.3 allows remote at

    YüksekCVSS 7,5İstismar yokEPSS %5

    libreoffice · libreoffice7 Kas 2014