Openoffice

Vendor:

First CVE: Jun 1, 2004 · Active for 22 years

61
Total CVEs
More Total CVEs than 98% of tracked products
3.4
Avg CVEs / Year
Higher CVE frequency than 82% of tracked products
7.6
Avg CVSS
Higher Avg CVSS than 61% of tracked products
0.0%
KEV Rate
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact Openoffice over time

Volume of CVEsAvg CVSS Base Score
First CVE
Jun 1, 2004
22 years ago
Most Recent CVE
Nov 12, 2025
254 days ago

CVE Severity & Scoring

Openoffice61 CVEs
All CVEs352,231 CVEs
MediumHigh
Attack Vector
Local15 (24.6%)
Network18 (29.5%)
Unknown28 (45.9%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low33 (54.1%)
High0 (0.0%)
Unknown28 (45.9%)
User Interaction
None12 (19.7%)
Unknown28 (45.9%)
Required21 (34.4%)
Privileges Required
Low4 (6.6%)
High0 (0.0%)
None29 (47.5%)
Unknown28 (45.9%)

Top CVEs

Signals from CVEs in this product scope (61 CVEs).

61 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
An information disclosure vulnerability occurs when LibreOffice 6.0.3 and Apache OpenOffice Writer 4.1.5 automatically process and initiate an SMB connection embedded in a maliciou
May 1, 20187.578NOYES
Apache OpenOffice opens dBase/DBF documents and shows the contents as spreadsheets. DBF are database files with data organized in fields. When reading DBF data the size of certain
Sep 23, 20217.853NONO
OpenOffice.org 2.x and 3.0 before 3.2.1 allows user-assisted remote attackers to bypass Python macro security restrictions and execute arbitrary Python code via a crafted OpenDocum
Jun 10, 20109.334NONO
Heap-based buffer overflow in the GIFLZWDecompressor::GIFLZWDecompressor function in filter.vcl/lgif/decode.cxx in OpenOffice.org (OOo) before 3.2 allows remote attackers to cause
Feb 16, 20109.334NONO
Multiple format string vulnerabilities in (1) neon 0.24.4 and earlier, and other products that use neon including (2) Cadaver, (3) Subversion, and (4) OpenOffice, allow remote mali
Jun 1, 20046.834NOYES
Multiple directory traversal vulnerabilities in OpenOffice.org (OOo) 2.x and 3.x before 3.3 allow remote attackers to overwrite arbitrary files via a .. (dot dot) in an entry in (1
Jan 28, 20119.333NONO
Heap-based buffer overflow in Impress in OpenOffice.org (OOo) 2.x and 3.x before 3.3 allows remote attackers to cause a denial of service (application crash) or possibly execute ar
Jan 28, 20119.332NONO
Heap-based buffer overflow in Impress in OpenOffice.org (OOo) 2.x and 3.x before 3.3 allows remote attackers to cause a denial of service (application crash) or possibly execute ar
Jan 28, 20119.332NONO
Multiple off-by-one errors in the WW8DopTypography::ReadFromMem function in oowriter in OpenOffice.org (OOo) 2.x and 3.x before 3.3 allow remote attackers to cause a denial of serv
Jan 28, 20119.332NONO
Use-after-free vulnerability in oowriter in OpenOffice.org (OOo) 2.x and 3.x before 3.3 allows remote attackers to cause a denial of service (application crash) or possibly execute
Jan 28, 20119.332NONO

Exploit Exposure

Signals from CVEs in this product scope (61 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
1 CVE
1.6% of CVEs· 96th percentile
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
2 CVEs
3.3% of CVEs· 88th percentile

Social Chatter

Signals from CVEs in this product scope (61 CVEs).

Media Mentions

Signals from CVEs in this product scope (61 CVEs).

Top CNAs Publishing CVEs For Openoffice

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
4.1.817.80.5%00
4.1.517.578.7%01
3.4.016.513.7%00
3.3.027.27.8%00
3.1.119.38.1%00
2.4.128.69.4%00
2.0.419.38.1%00