VendorsMicrosoftwindowsall versions
Vulnerabilities

Microsoft Windows

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

10355CVEs
CVE-2026-21333
Illustrator | Untrusted Search Path (CWE-426)
Published 2026-03-10 · Analyzed
8.6EPSS 0.002
CVE-2025-0320
Citrix Secure Access - Local Privilege escalation allows a low-privileged user to gain SYSTEM privileges
Published 2025-06-17 · Analyzed
8.6EPSS 0.001
CVE-2026-102317
Improper privilege management in Mojo in Google Chrome on on Windows prior to 154.0.8037.92 allowed a local attacker to potentially execute arbitrary code outside the sandbox via a local program. (Chromium security severity: High)
Published 2026-09-29 · Analyzed
8.6EPSS 0.001
CVE-2026-13849
Insufficient validation of untrusted input in Chromoting in Google Chrome on Windows prior to 150.0.7871.47 allowed a local attacker to potentially perform a sandbox escape via a malicious file. (Chromium security severity: High)
Published 2026-06-30 · Modified
8.6EPSS 0.001
CVE-2026-2123
Privilege escalation vulnerability in Operations Agent
Published 2026-03-31 · Analyzed
8.6EPSS 0.001
CVE-2021-35244
Unrestricted File Upload Causing Remote Code Execution: Orion Platform 2020.2.6
Published 2021-12-20 · Modified
8.5EPSS 0.058
CVE-2015-0307
Adobe Flash Player before 13.0.0.260 and 14.x through 16.x before 16.0.0.257 on Windows and OS X and before 11.2.202.429 on Linux, Adobe AIR before 16.0.0.245 on Windows and OS X and before 16.0.0.272 on Android, Adobe AIR SDK before 16.0.0.272, and Adobe AIR SDK & Compiler before 16.0.0.272 allow remote attackers to obtain sensitive information from process memory or cause a denial of service (out-of-bounds read) via unspecified vectors.
Published 2015-01-13 · Modified
8.5EPSS 0.053
CVE-2014-3094
Stack-based buffer overflow in IBM DB2 9.7 through FP9a, 9.8 through FP5, 10.1 through FP4, and 10.5 before FP4 on Linux, UNIX, and Windows allows remote authenticated users to execute arbitrary code via a crafted ALTER MODULE statement.
Published 2014-09-04 · Modified
8.5EPSS 0.050
CVE-2010-1141
VMware Tools in VMware Workstation 6.5.x before 6.5.4 build 246459; VMware Player 2.5.x before 2.5.4 build 246459; VMware ACE 2.5.x before 2.5.4 build 246459; VMware Server 2.x before 2.0.2 build 203138; VMware Fusion 2.x before 2.0.6 build 246742; VMware ESXi 3.5 and 4.0; and VMware ESX 2.5.5, 3.0.3, 3.5, and 4.0 does not properly access libraries, which allows user-assisted remote attackers to execute arbitrary code by tricking a Windows guest OS user into clicking on a file that is stored on a network share.
Published 2010-04-12 · Modified
8.5EPSS 0.038
CVE-2013-6744
The Stored Procedure infrastructure in IBM DB2 9.5, 9.7 before FP9a, 10.1 before FP3a, and 10.5 before FP3a on Windows allows remote authenticated users to gain privileges by leveraging the CONNECT privilege and the CREATE_EXTERNAL_ROUTINE authority.
Published 2014-05-30 · Modified
8.5EPSS 0.027
CVE-2008-1998
The NNSTAT (aka SYSPROC.NNSTAT) procedure in IBM DB2 8 before FP16, 9.1 before FP4a, and 9.5 before FP1 on Windows allows remote authenticated users to overwrite arbitrary files via the log file parameter.
Published 2008-04-28 · Modified
8.5EPSS 0.025
CVE-2019-3974
Nessus 8.5.2 and earlier on Windows platforms were found to contain an issue where certain system files could be overwritten arbitrarily, potentially creating a denial of service condition.
Published 2019-08-15 · Modified
8.5EPSS 0.018
CVE-2010-1142
VMware Tools in VMware Workstation 6.5.x before 6.5.4 build 246459; VMware Player 2.5.x before 2.5.4 build 246459; VMware ACE 2.5.x before 2.5.4 build 246459; VMware Server 2.x before 2.0.2 build 203138; VMware Fusion 2.x before 2.0.6 build 246742; VMware ESXi 3.5 and 4.0; and VMware ESX 2.5.5, 3.0.3, 3.5, and 4.0 does not properly load VMware programs, which might allow Windows guest OS users to gain privileges by placing a Trojan horse program at an unspecified location on the guest OS disk.
Published 2010-04-12 · Modified
8.5EPSS 0.016
CVE-2022-28182
NVIDIA GPU Display Driver for Windows contains a vulnerability in the DirectX11 user mode driver (nvwgf2um/x.dll), where an unauthorized attacker on the network can cause an out-of-bounds write through a specially crafted shader, which may lead to code execution to cause denial of service, escalation of privileges, information disclosure, and data tampering. The scope of the impact may extend to other components.
Published 2022-05-17 · Modified
8.5EPSS 0.016
CVE-2020-3927
ServiSign Windows Versions- Arbitrary File Deletion
Published 2020-02-03 · Modified
8.5EPSS 0.012
CVE-2021-44750
Arbitrary Code Execution
Published 2022-03-09 · Modified
8.5EPSS 0.007
CVE-2024-25699
Portal for ArcGIS has an invalid authentication vulnerability
Published 2024-04-04 · Analyzed
8.5EPSS 0.007
CVE-2026-82003
Adobe Campaign Classic (ACC) | Improper Input Validation (CWE-20)
Published 2026-09-22 · Analyzed
8.5EPSS 0.005
CVE-2025-52452
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Salesforce Tableau Server on Windows, Linux (tabdoc api - duplicate-data-source modules) allows Absolute Path Traversal. This issue affects Tableau Server: before 2025.1.3, before 2024.2.12, before 2023.3.19.
Published 2025-07-25 · Analyzed
8.5EPSS 0.004
CVE-2024-11364
Rockwell Automation Third Party Vulnerability in Arena®
Published 2024-12-19 · Analyzed
8.5EPSS 0.003
CVE-2024-51954
Unauthorized access to secure services in ArcGIS Server
Published 2025-03-03 · Analyzed
8.5EPSS 0.003
CVE-2024-9950
Abuse of Unauthenticated Compliance Recheck in SecureConnector
Published 2025-01-02 · Analyzed
8.5EPSS 0.003
CVE-2025-34194
Vasion Print (formerly PrinterLogic) Local Privilege Escalation via Insecure Temporary File Handling
Published 2025-09-19 · Modified
8.5EPSS 0.003
CVE-2025-7361
Code Injection Vulnerability in NI LabVIEW when using CIN nodes
Published 2025-07-29 · Analyzed
8.5EPSS 0.003
CVE-2025-53000
nbconvert has an uncontrolled search path that leads to unauthorized code execution on Windows
Published 2025-12-17 · Modified
8.5EPSS 0.003
CVE-2025-52449
Unrestricted Upload of File with Dangerous Type vulnerability in Salesforce Tableau Server on Windows, Linux (Extensible Protocol Service modules) allows Alternative Execution Due to Deceptive Filenames (RCE). This issue affects Tableau Server: before 2025.1.3, before 2024.2.12, before 2023.3.19.
Published 2025-07-25 · Analyzed
8.5EPSS 0.003
CVE-2026-18657
Executable Resolution from Untrusted Project Directory in Kiro CLI on Windows
Published 2026-08-04 · Analyzed
8.5EPSS 0.002
CVE-2024-58315
Tosibox Key Service 3.3.0 Local Privilege Escalation via Unquoted Service Path
Published 2025-12-30 · Modified
8.5EPSS 0.002
CVE-2024-12672
Rockwell Automation Third Party Vulnerability in Arena®
Published 2024-12-19 · Analyzed
8.5EPSS 0.002
CVE-2026-18656
Executable Resolution from Untrusted Project Directory in Kiro IDE on Windows
Published 2026-08-04 · Analyzed
8.5EPSS 0.002
CVE-2025-52451
Improper Input Validation vulnerability in Salesforce Tableau Server on Windows, Linux (tabdoc api - create-data-source-from-file-upload modules) allows Absolute Path Traversal.This issue affects Tableau Server: before 2025.1.3, before 2024.2.12, before 2023.3.19.
Published 2025-08-22 · Analyzed
8.5EPSS 0.002
CVE-2025-58742
Insufficient Configuration Protections Enable Database Credential Interception in Milner ImageDirector Capture
Published 2026-01-20 · Analyzed
8.5EPSS 0.002
CVE-2026-45175
Idira Endpoint Privilege Manager Agent: Security Control and Cryptographic Validation Bypass in Internal Agent Validation Processes
Published 2026-06-11 · Analyzed
8.5EPSS 0.002
CVE-2026-44470
Claude Desktop: Local Privilege Escalation via Directory Junction in CoworkVMService
Published 2026-05-13 · Analyzed
8.5EPSS 0.002
CVE-2026-33451
Arbitrary read/write vulnerability in Windows clients prior to 14.50
Published 2026-04-30 · Analyzed
8.5EPSS 0.002
CVE-2026-40952
Privilge misconfiguration in Secure Access installers
Published 2026-07-15 · Modified
8.5EPSS 0.001
CVE-2025-58740
Hardcoded Encryption Key Enables Database Credential Access in Milner ImageDirector Capture
Published 2026-01-20 · Analyzed
8.5EPSS 0.001
CVE-2021-35245
Broken Access Control Vulnerability for SolarWinds Serv-U
Published 2021-12-06 · Modified
8.4EPSS 0.012
CVE-2016-1008
Untrusted search path vulnerability in Adobe Reader and Acrobat before 11.0.15, Acrobat and Acrobat Reader DC Classic before 15.006.30121, and Acrobat and Acrobat Reader DC Continuous before 15.010.20060 on Windows and OS X allows local users to gain privileges via a Trojan horse DLL in an unspecified directory.
Published 2016-03-09 · Modified
8.4EPSS 0.011
CVE-2020-8144
The UniFi Video Server v3.9.3 and prior (for Windows 7/8/10 x64) web interface Firmware Update functionality, under certain circumstances, does not validate firmware download destinations to ensure they are within the intended destination directory tree. It accepts a request with a URL to firmware update information. If the version field contains ..\ character sequences, the destination file path to save the firmware can be manipulated to be outside the intended destination directory tree. Fixed in UniFi Video Controller v3.10.3 and newer.
Published 2020-04-01 · Modified
8.4EPSS 0.007
← Prev101 / 259Next →