By Pierluigi Paganini
Publication Date: 2026-01-08 10:41:00
US CISA adds HPE OneView and Microsoft Office PowerPoint flaws to its catalog of known exploited vulnerabilities

The US Cybersecurity and Infrastructure Security Agency (CISA) adds HPE OneView and Microsoft Office PowerPoint flaws to its catalog of known exploited vulnerabilities.
The US Cybersecurity and Infrastructure Security Agency (CISA) aggregate HPE OneView and Microsoft Office PowerPoint defects on your Catalog of Known Exploited Vulnerabilities (KEV).
Below are the faults added to the catalog:
CVE-2009-0556 is a memory corruption flaw in legacy Microsoft PowerPoint that allows attackers to execute arbitrary code via a crafted .ppt file. An invalid index on OutlineTextRefAtom triggers improper memory handling when the file is opened. Loosely exploited in April 2009 (Exploit:Win32/Apptom.gen), it affects PowerPoint 2000/2002/2003 and Office 2004 for Mac, allowing…