Common Vulnerabilities and Exposures (CVE)

CVE-2025-49706

Jul 11, 2025 22:32:57 UTC

Improper authentication in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.

CVE-2025-49705

Jul 11, 2025 22:32:56 UTC

Heap-based buffer overflow in Microsoft Office PowerPoint allows an unauthorized attacker to execute code locally.

CVE-2025-49704

Jul 11, 2025 22:32:55 UTC

Improper control of generation of code ('code injection') in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.

CVE-2025-49703

Jul 11, 2025 22:32:55 UTC

Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.

CVE-2025-49702

Jul 11, 2025 22:32:54 UTC

Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally.

CVE-2025-49701

Jul 11, 2025 22:32:54 UTC

Improper authorization in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.

CVE-2025-49700

Jul 11, 2025 22:32:53 UTC

Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.

CVE-2025-49699

Jul 11, 2025 22:32:52 UTC

Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

CVE-2025-49698

Jul 11, 2025 22:32:52 UTC

Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.

CVE-2025-49697

Jul 11, 2025 22:32:51 UTC

Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.

CVE-2025-49696

Jul 11, 2025 22:32:51 UTC

Out-of-bounds read in Microsoft Office allows an unauthorized attacker to execute code locally.

CVE-2025-49695

Jul 11, 2025 22:32:50 UTC

Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

CVE-2025-49693

Jul 11, 2025 22:32:49 UTC

Double free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally.

CVE-2025-49685

Jul 11, 2025 22:32:49 UTC

Use after free in Microsoft Windows Search Component allows an authorized attacker to elevate privileges locally.

CVE-2025-49684

Jul 11, 2025 22:32:48 UTC

Buffer over-read in Storage Port Driver allows an authorized attacker to disclose information locally.