Office Ocx encompasses a narrow set of legacy viewer controls for Microsoft Office file formats including Excel, Word, PowerPoint, and general Office documents, deployed historically as browser plugins and embedded components. The limited vulnerability signal centers on these legacy viewer products and reflects the broad categorization typical of older disclosure practices; current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Office Ocx over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2007-2588HIGH Multiple buffer overflows in the Office Viewer OCX ActiveX control (oa.ocx) 3.2 allow remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a | May 10, 2007 | 9.3 | 36 | NO | YES |
CVE-2007-2494HIGH Multiple stack-based buffer overflows in the PowerPointOCX ActiveX control in PowerPointViewer.ocx 3.1.0.3 allow remote attackers to cause a denial of service (Internet Explorer 7 | May 4, 2007 | 10.0 | 36 | NO | YES |
CVE-2007-2496HIGH The WordOCX ActiveX control in WordViewer.ocx 3.2.0.5 allows remote attackers to cause a denial of service (Internet Explorer 7 crash) via a long (1) DoOleCommand, (2) FTPDownloadF | May 4, 2007 | 7.8 | 30 | NO | YES |
CVE-2007-2495HIGH Multiple stack-based buffer overflows in the ExcelOCX ActiveX control in ExcelViewer.ocx 3.1.0.6 allow remote attackers to cause a denial of service (Internet Explorer 7 crash) via | May 4, 2007 | 7.5 | 29 | NO | YES |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Office Ocx.
Media articles that mention a CVE ID that affects a product developed by Office Ocx — matched by CVE ID, not by vendor name.