VendorsMicrosoftwindowsall versions
Vulnerabilities

Microsoft Windows

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

10356CVEs
CVE-2019-5678
NVIDIA GeForce Experience versions prior to 3.19 contains a vulnerability in the Web Helper component, in which an attacker with local system access can craft input that may not be properly validated. Such an attack may lead to code execution, denial of service or information disclosure.
Published 2019-05-31 · Modified
7.8EPSS 0.009
CVE-2018-4394
A memory corruption issue was addressed with improved input validation. This issue affected versions prior to iOS 12.1, macOS Mojave 10.14.1, tvOS 12.1, watchOS 5.1, iTunes 12.9.1.
Published 2019-04-03 · Modified
7.8EPSS 0.009
CVE-2020-7852
DaviewIndy Heap Overflow Vulnerabilities
Published 2021-03-24 · Modified
7.8EPSS 0.009
CVE-2024-30326
Foxit PDF Reader Doc Object Use-After-Free Remote Code Execution Vulnerability
Published 2024-04-03 · Analyzed
7.8EPSS 0.009
CVE-2020-15523
In Python 3.6 through 3.6.10, 3.7 through 3.7.8, 3.8 through 3.8.4rc1, and 3.9 through 3.9.0b4 on Windows, a Trojan horse python3.dll might be used in cases where CPython is embedded in a native application. This occurs because python3X.dll may use an invalid search path for python3.dll loading (after Py_SetPath has been used). NOTE: this issue CANNOT occur when using python.exe from a standard (non-embedded) Python installation on Windows.
Published 2020-07-04 · Modified
7.8EPSS 0.009
CVE-2024-30328
Foxit PDF Reader AcroForm Use-After-Free Remote Code Execution Vulnerability
Published 2024-04-03 · Analyzed
7.8EPSS 0.009
CVE-2024-30333
Foxit PDF Reader Doc Object Use-After-Free Remote Code Execution Vulnerability
Published 2024-04-03 · Analyzed
7.8EPSS 0.009
CVE-2024-30325
Foxit PDF Reader AcroForm Use-After-Free Remote Code Execution Vulnerability
Published 2024-04-03 · Analyzed
7.8EPSS 0.009
CVE-2024-30324
Foxit PDF Reader Doc Object Use-After-Free Remote Code Execution Vulnerability
Published 2024-04-03 · Analyzed
7.8EPSS 0.009
CVE-2024-30332
Foxit PDF Reader Doc Object Use-After-Free Remote Code Execution Vulnerability
Published 2024-04-03 · Analyzed
7.8EPSS 0.009
CVE-2024-30334
Foxit PDF Reader Doc Object Use-After-Free Remote Code Execution Vulnerability
Published 2024-04-03 · Analyzed
7.8EPSS 0.009
CVE-2024-30331
Foxit PDF Reader AcroForm Use-After-Free Remote Code Execution Vulnerability
Published 2024-04-03 · Analyzed
7.8EPSS 0.009
CVE-2024-30322
Foxit PDF Reader AcroForm Use-After-Free Remote Code Execution Vulnerability
Published 2024-04-03 · Analyzed
7.8EPSS 0.009
CVE-2026-31994
OpenClaw < 2026.2.19 - Local Command Injection via Unsafe cmd Argument Handling in Windows Scheduled Task Script Generation
Published 2026-03-19 · Analyzed
7.8EPSS 0.009
CVE-2016-4118
Untrusted search path vulnerability in the installer in Adobe Connect Add-In before 11.9.976.291 on Windows allows local users to gain privileges via unspecified vectors.
Published 2016-05-30 · Modified
7.8EPSS 0.009
CVE-2022-35899
There is an unquoted service path in ASUSTeK Aura Ready Game SDK service (GameSDK.exe) 1.0.0.4. This might allow a local user to escalate privileges by creating a %PROGRAMFILES(X86)%\ASUS\GameSDK.exe file.
Published 2022-07-21 · Modified
7.81 PoCEPSS 0.009
CVE-2017-3005
Adobe Photoshop versions CC 2017 (18.0.1) and earlier, CC 2015.5.1 (17.0.1) and earlier have an unquoted search path vulnerability.
Published 2017-04-12 · Modified
7.8EPSS 0.009
CVE-2024-30330
Foxit PDF Reader AcroForm Use-After-Free Remote Code Execution Vulnerability
Published 2024-04-03 · Analyzed
7.8EPSS 0.009
CVE-2024-30327
Foxit PDF Reader template Use-After-Free Remote Code Execution Vulnerability
Published 2024-04-03 · Analyzed
7.8EPSS 0.009
CVE-2024-30314
Dreamweaver Desktop | Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') (CWE-78)
Published 2024-05-16 · Analyzed
7.8EPSS 0.009
CVE-2024-30323
Foxit PDF Reader template Out-Of-Bounds Read Remote Code Execution Vulnerability
Published 2024-04-03 · Analyzed
7.8EPSS 0.009
CVE-2018-6514
In Puppet Agent 1.10.x prior to 1.10.13, Puppet Agent 5.3.x prior to 5.3.7, Puppet Agent 5.5.x prior to 5.5.2, Facter on Windows is vulnerable to a DLL preloading attack, which could lead to a privilege escalation.
Published 2018-06-11 · Modified
7.8EPSS 0.008
CVE-2018-6515
Puppet Agent 1.10.x prior to 1.10.13, Puppet Agent 5.3.x prior to 5.3.7, and Puppet Agent 5.5.x prior to 5.5.2 on Windows only, with a specially crafted configuration file an attacker could get pxp-agent to load arbitrary code with privilege escalation.
Published 2018-06-11 · Modified
7.8EPSS 0.008
CVE-2018-6516
On Windows only, with a specifically crafted configuration file an attacker could get Puppet PE client tools (aka pe-client-tools) 16.4.x prior to 16.4.6, 17.3.x prior to 17.3.6, and 18.1.x prior to 18.1.2 to load arbitrary code with privilege escalation.
Published 2018-06-14 · Modified
7.8EPSS 0.008
CVE-2024-30366
Foxit PDF Reader AcroForm Use-After-Free Remote Code Execution Vulnerability
Published 2024-04-03 · Analyzed
7.8EPSS 0.008
CVE-2022-25365
Docker Desktop before 4.5.1 on Windows allows attackers to move arbitrary files. NOTE: this issue exists because of an incomplete fix for CVE-2022-23774.
Published 2022-02-19 · Modified
7.8EPSS 0.008
CVE-2020-3803
Adobe Acrobat and Reader versions 2020.006.20034 and earlier, 2017.011.30158 and earlier, 2017.011.30158 and earlier, 2015.006.30510 and earlier, and 2015.006.30510 and earlier have an insecure library loading (dll hijacking) vulnerability. Successful exploitation could lead to privilege escalation.
Published 2020-03-25 · Modified
7.8EPSS 0.008
CVE-2024-30365
Foxit PDF Reader AcroForm Use-After-Free Remote Code Execution Vulnerability
Published 2024-04-02 · Analyzed
7.8EPSS 0.008
CVE-2024-30371
Foxit PDF Reader AcroForm Use-After-Free Remote Code Execution Vulnerability
Published 2024-04-02 · Analyzed
7.8EPSS 0.008
CVE-2024-30367
Foxit PDF Reader AcroForm Use-After-Free Remote Code Execution Vulnerability
Published 2024-04-02 · Analyzed
7.8EPSS 0.008
CVE-2024-30352
Foxit PDF Reader AcroForm Use-After-Free Remote Code Execution Vulnerability
Published 2024-04-02 · Analyzed
7.8EPSS 0.008
CVE-2024-30339
Foxit PDF Reader AcroForm Use-After-Free Remote Code Execution Vulnerability
Published 2024-04-02 · Analyzed
7.8EPSS 0.008
CVE-2024-30361
Foxit PDF Reader AcroForm Use-After-Free Remote Code Execution Vulnerability
Published 2024-04-02 · Analyzed
7.8EPSS 0.008
CVE-2024-30358
Foxit PDF Reader AcroForm User-After-Free Remote Code Execution Vulnerability
Published 2024-04-02 · Analyzed
7.8EPSS 0.008
CVE-2024-30345
Foxit PDF Reader AcroForm Use-After-Free Remote Code Execution Vulnerability
Published 2024-04-02 · Analyzed
7.8EPSS 0.008
CVE-2024-30360
Foxit PDF Reader AcroForm Use-After-Free Remote Code Execution Vulnerability
Published 2024-04-02 · Analyzed
7.8EPSS 0.008
CVE-2024-30351
Foxit PDF Reader AcroForm Use-After-Free Remote Code Execution Vulnerability
Published 2024-04-02 · Analyzed
7.8EPSS 0.008
CVE-2024-30344
Foxit PDF Reader AcroForm Use-After-Free Remote Code Execution Vulnerability
Published 2024-04-02 · Analyzed
7.8EPSS 0.008
CVE-2024-30346
Foxit PDF Reader AcroForm Use-After-Free Remote Code Execution Vulnerability
Published 2024-04-02 · Analyzed
7.8EPSS 0.008
CVE-2024-30336
Foxit PDF Reader AcroForm Use-After-Free Remote Code Execution Vulnerability
Published 2024-04-02 · Analyzed
7.8EPSS 0.008
← Prev124 / 259Next →