Outlook

Vendor:

First CVE: Jan 1, 1997 · Active for 29 years

121
Total CVEs
More Total CVEs than 99% of tracked products
4.8
Avg CVEs / Year
Higher CVE frequency than 87% of tracked products
7.0
Avg CVSS
Higher Avg CVSS than 41% of tracked products
4.1%
KEV Rate
Higher KEV Rate than 97% of tracked products

Trends Over Time

The number and severity of CVEs published that impact Outlook over time

Volume of CVEsAvg CVSS Base Score
First CVE
Jan 1, 1997
29 years ago
Most Recent CVE
May 12, 2026
73 days ago

CVE Severity & Scoring

Outlook121 CVEs
All CVEs352,231 CVEs
MediumHighCritical
Attack Vector
Local29 (24.0%)
Network44 (36.4%)
Unknown47 (38.8%)
Physical1 (0.8%)
Adjacent Network0 (0.0%)
Attack Complexity
Low67 (55.4%)
High7 (5.8%)
Unknown47 (38.8%)
User Interaction
None20 (16.5%)
Unknown47 (38.8%)
Required54 (44.6%)
Privileges Required
Low13 (10.7%)
High0 (0.0%)
None61 (50.4%)
Unknown47 (38.8%)

Top CVEs

Signals from CVEs in this product scope (121 CVEs).

121 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
Microsoft Outlook Elevation of Privilege Vulnerability
Mar 14, 20239.896YESNO
Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word 2013 SP1, Word 2013 RT SP1, Word for Mac 2011, Office Compatibility Pack SP3, Word Automation Services on SharePoint S
Apr 14, 20157.894YESNO
Microsoft Outlook 2010 SP2, Outlook 2013 SP1 and RT SP1, and Outlook 2016 allow an attacker to execute arbitrary commands, due to how Microsoft Office handles objects in memory, ak
Oct 13, 20177.888YESNO
Unspecified vulnerability in Microsoft Excel 2000, XP, 2003, and 2004 for Mac, and possibly other Office products, allows remote user-assisted attackers to execute arbitrary code v
Feb 3, 20078.884YESNO
Stack-based buffer overflow in the Vector Graphics Rendering engine (vgx.dll), as used in Microsoft Outlook and Internet Explorer 6.0 on Windows XP SP2, and possibly other versions
Sep 19, 20069.376NOYES
Microsoft Office Outlook 2002 SP3, 2003 SP3, and 2007 SP1 and SP2 does not properly verify e-mail attachments with a PR_ATTACH_METHOD property value of ATTACH_BY_REFERENCE, which a
Jul 15, 20109.375NOYES
Microsoft Outlook Security Feature Bypass Vulnerability
Jul 11, 20238.873YESNO
Microsoft Outlook View ActiveX Control in Microsoft Outlook 2002 and earlier allows remote attackers to execute arbitrary commands via a malicious HTML e-mail message or web page.
Aug 14, 200110.070NOYES
Buffer overflow in the JPEG (JPG) parsing engine in the Microsoft Graphic Device Interface Plus (GDI+) component, GDIPlus.dll, allows remote attackers to execute arbitrary code via
Sep 28, 20049.368NOYES
Directory traversal vulnerability in the web viewers for Business Objects Crystal Reports 9 and 10, and Crystal Enterprise 9 or 10, as used in Visual Studio .NET 2003 and Outlook 2
Aug 6, 20047.568NOYES

Exploit Exposure

Signals from CVEs in this product scope (121 CVEs).

CISA KEV
5 CVEs
4.1% of CVEs· 97th percentile
Metasploit
2 CVEs
1.7% of CVEs· 96th percentile
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
17 CVEs
14.0% of CVEs· 89th percentile

Social Chatter

Signals from CVEs in this product scope (121 CVEs).

Media Mentions

Signals from CVEs in this product scope (121 CVEs).

Top CNAs Publishing CVEs For Outlook

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
98115.712.4%04
9775.717.8%03
2016537.411.8%32
2013427.415.8%31
201127.253.6%10
2010357.214.3%10
2007177.218.7%01
2003207.029.7%17
2002186.422.0%14
2000236.820.0%16
16.83.319.10.7%00