Powerpoint

Vendor:

First CVE: Dec 31, 1999 · Active for 26 years

79
Total CVEs
More Total CVEs than 99% of tracked products
3.4
Avg CVEs / Year
Higher CVE frequency than 82% of tracked products
7.9
Avg CVSS
Higher Avg CVSS than 68% of tracked products
5.1%
KEV Rate
Higher KEV Rate than 97% of tracked products

Trends Over Time

The number and severity of CVEs published that impact Powerpoint over time

Volume of CVEsAvg CVSS Base Score
First CVE
Dec 31, 1999
26 years ago
Most Recent CVE
Jul 14, 2026
10 days ago

CVE Severity & Scoring

Powerpoint79 CVEs
All CVEs352,231 CVEs
LowMediumHighCritical
Attack Vector
Local28 (35.4%)
Network9 (11.4%)
Unknown42 (53.2%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low36 (45.6%)
High1 (1.3%)
Unknown42 (53.2%)
User Interaction
None2 (2.5%)
Unknown42 (53.2%)
Required35 (44.3%)
Privileges Required
Low1 (1.3%)
High0 (0.0%)
None36 (45.6%)
Unknown42 (53.2%)

Top CVEs

Signals from CVEs in this product scope (79 CVEs).

79 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
Microsoft Office PowerPoint 2000 SP3, 2002 SP3, and 2003 SP3, and PowerPoint in Microsoft Office 2004 for Mac, allows remote attackers to execute arbitrary code via a PowerPoint fi
Apr 3, 20098.891YESNO
Buffer overflow in Microsoft PowerPoint 2002 SP3 and 2003 SP3 allows remote attackers to execute arbitrary code via a crafted PowerPoint 95 document, aka "PowerPoint Parsing Buffer
Nov 10, 20107.889YESNO
Unspecified vulnerability in Microsoft Excel 2000, XP, 2003, and 2004 for Mac, and possibly other Office products, allows remote user-assisted attackers to execute arbitrary code v
Feb 3, 20078.884YESNO
Microsoft PowerPoint 2007 SP3, Word 2007 SP3, PowerPoint 2010 SP2, Word 2010 SP2, PowerPoint 2013 SP1, Word 2013 SP1, and PowerPoint 2013 RT SP1 allow remote attackers to execute a
Jul 14, 20158.882YESNO
Stack-based buffer overflow in Microsoft Office PowerPoint 2003 SP3 allows remote attackers to execute arbitrary code via a crafted PowerPoint document, aka "PowerPoint Viewer Text
Feb 10, 20109.374NOYES
Buffer overflow in the JPEG (JPG) parsing engine in the Microsoft Graphic Device Interface Plus (GDI+) component, GDIPlus.dll, allows remote attackers to execute arbitrary code via
Sep 28, 20049.368NOYES
Microsoft Excel 2007 SP3, PowerPoint 2007 SP3, Word 2007 SP3, Excel 2010 SP2, PowerPoint 2010 SP2, and Word 2010 SP2 allow remote attackers to execute arbitrary code via a crafted
Mar 11, 20159.362NOYES
Untrusted search path vulnerability in Microsoft Office PowerPoint 2007 allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attac
Aug 27, 20109.346NOYES
Untrusted search path vulnerability in Microsoft PowerPoint 2010 allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via
Aug 27, 20109.344NOYES
Unspecified vulnerability in Microsoft PowerPoint 2000 through 2003, possibly a buffer overflow, allows user-assisted remote attackers to execute arbitrary commands via a malformed
Aug 9, 20067.542NONO

Exploit Exposure

Signals from CVEs in this product scope (79 CVEs).

CISA KEV
4 CVEs
5.1% of CVEs· 97th percentile
Metasploit
1 CVE
1.3% of CVEs· 96th percentile
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
10 CVEs
12.7% of CVEs· 89th percentile

Social Chatter

Signals from CVEs in this product scope (79 CVEs).

Media Mentions

Signals from CVEs in this product scope (79 CVEs).

Top CNAs Publishing CVEs For Powerpoint

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
v.x17.517.4%00
9817.517.4%00
9737.35.5%00
9517.59.4%00
2016227.85.8%01
2013137.514.2%00
201119.318.9%00
2010228.219.0%12
200819.330.1%00
2007158.522.2%12
200438.719.0%00
2003227.225.1%36
2002178.229.2%31
200127.530.1%00
2000117.424.5%20
16.8319.10.9%00