VendorsMicrosoftwindowsall versions
Vulnerabilities

Microsoft Windows

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

10356CVEs
CVE-2024-30341
Foxit PDF Reader Doc Object Out-Of-Bounds Read Remote Code Execution Vulnerability
Published 2024-04-02 · Analyzed
7.8EPSS 0.008
CVE-2021-25247
A DLL hijacking vulnerability Trend Micro HouseCall for Home Networks version 5.3.1063 and below could allow an attacker to use a malicious DLL to escalate privileges and perform arbitrary code execution. An attacker must already have user privileges on the machine to exploit this vulnerability.
Published 2021-01-27 · Modified
7.8EPSS 0.007
CVE-2024-30349
Foxit PDF Reader U3D File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
Published 2024-04-02 · Analyzed
7.8EPSS 0.007
CVE-2024-30359
Foxit PDF Reader AcroForm 3D Out-Of-Bounds Read Remote Code Execution Vulnerability
Published 2024-04-02 · Analyzed
7.8EPSS 0.007
CVE-2020-5740
Improper Input Validation in Plex Media Server on Windows allows a local, unauthenticated attacker to execute arbitrary Python code with SYSTEM privileges.
Published 2020-04-22 · Modified
7.8EPSS 0.007
CVE-2024-48903
An improper access control vulnerability in Trend Micro Deep Security Agent 20 could allow a local attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.
Published 2024-10-22 · Analyzed
7.8EPSS 0.007
CVE-2016-0947
Untrusted search path vulnerability in Adobe Download Manager, as used in Adobe Reader and Acrobat before 11.0.14, Acrobat and Acrobat Reader DC Classic before 15.006.30119, and Acrobat and Acrobat Reader DC Continuous before 15.010.20056 on Windows and OS X, allows local users to gain privileges via a crafted resource in an unspecified directory.
Published 2016-01-14 · Modified
7.8EPSS 0.007
CVE-2017-2218
Untrusted search path vulnerability in Installer of QuickTime for Windows allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
Published 2017-07-07 · Modified
7.8EPSS 0.007
CVE-2019-20357
A Persistent Arbitrary Code Execution vulnerability exists in the Trend Micro Security 2020 (v160 and 2019 (v15) consumer familiy of products which could potentially allow an attacker the ability to create a malicious program to escalate privileges and attain persistence on a vulnerable system.
Published 2020-01-17 · Modified
7.8EPSS 0.007
CVE-2022-38411
Adobe Animate SVG File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability
Published 2022-09-16 · Modified
7.8EPSS 0.007
CVE-2019-20456
Goverlan Reach Console before 9.50, Goverlan Reach Server before 3.50, and Goverlan Client Agent before 9.20.50 have an Untrusted Search Path that leads to Command Injection and Local Privilege Escalation via DLL hijacking.
Published 2020-02-16 · Modified
7.8EPSS 0.007
CVE-2020-7851
Innorix File Transfer Solution File Download and Execution Vulnerability
Published 2021-04-19 · Modified
7.8EPSS 0.007
CVE-2017-3007
Adobe Thor versions 3.9.5.353 and earlier have a vulnerability in the directory search path used to find resources, related to Creative Cloud desktop applications.
Published 2017-04-12 · Modified
7.8EPSS 0.007
CVE-2019-17387
An authentication flaw in the AVPNC_RP service in Aviatrix VPN Client through 2.2.10 allows an attacker to gain elevated privileges through arbitrary code execution on Windows, Linux, and macOS.
Published 2019-12-05 · Modified
7.8EPSS 0.007
CVE-2022-35706
Adobe Bridge SVG File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability
Published 2022-09-19 · Modified
7.8EPSS 0.007
CVE-2019-17180
Valve Steam Client before 2019-09-12 allows placing or appending partially controlled filesystem content, as demonstrated by file modifications on Windows in the context of NT AUTHORITY\SYSTEM. This could lead to denial of service, elevation of privilege, or unspecified other impact.
Published 2019-10-04 · Modified
7.8EPSS 0.007
CVE-2020-7811
Samsung Update Local Privilege Escalation Vulnerability
Published 2020-10-12 · Modified
7.8EPSS 0.007
CVE-2020-24419
Uncontrolled Search Path Element in Adobe After Effects for Windows
Published 2020-10-21 · Modified
7.8EPSS 0.007
CVE-2017-1677
IBM Data Server Driver for JDBC and SQLJ (IBM DB2 for Linux, UNIX and Windows 9.7, 10.1, 10.5, and 11.1) deserializes the contents of /tmp/connlicj.bin which leads to object injection and potentially arbitrary code execution depending on the classpath. IBM X-Force ID: 133999.
Published 2018-03-22 · Modified
7.8EPSS 0.007
CVE-2017-3196
PCAUSA Rawether framework does not properly validate BPF data, allowing a crafted malicious BPF program to perform operations on memory outside of its typical bounds on the driver's receipt of network packets. Local attackers can exploit this issue to execute arbitrary code with SYSTEM privileges.
Published 2017-12-15 · Modified
7.8EPSS 0.007
CVE-2019-16784
Local Privilege Escalation present only on the Windows version of PyInstaller
Published 2020-01-14 · Modified
7.8EPSS 0.007
CVE-2022-26503
Deserialization of untrusted data in Veeam Agent for Windows 2.0, 2.1, 2.2, 3.0.2, 4.x, and 5.x allows local users to run arbitrary code with local system privileges.
Published 2022-03-17 · Modified
7.8EPSS 0.007
CVE-2019-5443
A non-privileged user or program can put code and a config file in a known non-privileged path (under C:/usr/local/) that will make curl <= 7.65.1 automatically run the code (as an openssl "engine") on invocation. If that curl is invoked by a privileged user it can do anything it wants.
Published 2019-07-02 · Modified
7.8EPSS 0.007
CVE-2020-24425
Privilege escalation vulnerability in Dreamweaver version 20.2
Published 2020-10-21 · Modified
7.8EPSS 0.007
CVE-2023-38041
A logged in user may elevate its permissions by abusing a Time-of-Check to Time-of-Use (TOCTOU) race condition. When a particular process flow is initiated, an attacker can exploit this condition to gain unauthorized elevated privileges on the affected system.
Published 2023-10-25 · Modified
7.8EPSS 0.007
CVE-2019-20362
In Teradici PCoIP Agent before 19.08.1 and PCoIP Client before 19.08.3, an unquoted service path can cause execution of %PROGRAMFILES(X86)%\Teradici\PCoIP.exe instead of the intended pcoip_vchan_printing_svc.exe file.
Published 2020-01-08 · Modified
7.8EPSS 0.007
CVE-2022-27502
RealVNC VNC Server 6.9.0 through 5.1.0 for Windows allows local privilege escalation because an installer repair operation executes %TEMP% files as SYSTEM.
Published 2022-06-10 · Modified
7.8EPSS 0.007
CVE-2016-8823
All versions of NVIDIA Windows GPU Display Driver contain a vulnerability in the kernel mode layer handler for DxgDdiEscape where the size of an input buffer is not validated leading to a denial of service or possible escalation of privileges
Published 2016-12-16 · Modified
7.8EPSS 0.007
CVE-2022-25372
Pritunl Client through 1.2.3019.52 on Windows allows local privilege escalation, related to an ACL entry for CREATOR OWNER in platform_windows.go.
Published 2022-02-20 · Modified
7.8EPSS 0.006
CVE-2021-45231
A link following privilege escalation vulnerability in Trend Micro Apex One (on-prem and SaaS) and Trend Micro Worry-Free Business Security (10.0 SP1 and Services) could allow a local attacker to create a specially crafted file with arbitrary content which could grant local privilege escalation on the affected system. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.
Published 2022-01-08 · Modified
7.8EPSS 0.006
CVE-2020-9442
OpenVPN Connect 3.1.0.361 on Windows has Insecure Permissions for %PROGRAMDATA%\OpenVPN Connect\drivers\tap\amd64\win10, which allows local users to gain privileges by copying a malicious drvstore.dll there.
Published 2020-02-28 · Modified
7.8EPSS 0.006
CVE-2022-38405
Adobe InCopy SVG File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability
Published 2022-09-16 · Modified
7.8EPSS 0.006
CVE-2022-38403
Adobe InCopy SVG File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability
Published 2022-09-16 · Modified
7.8EPSS 0.006
CVE-2022-38404
Adobe InCopy SVG File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability
Published 2022-09-16 · Modified
7.8EPSS 0.006
CVE-2024-23940
Trend Micro uiAirSupport, included in the Trend Micro Security 2023 family of consumer products, version 6.0.2092 and below is vulnerable to a DLL hijacking/proxying vulnerability, which if exploited could allow an attacker to impersonate and modify a library to execute code on the system and ultimately escalate privileges on an affected system.
Published 2024-01-29 · Modified
7.8EPSS 0.006
CVE-2022-38432
Adobe Photoshop SVG File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability
Published 2022-09-16 · Modified
7.8EPSS 0.006
CVE-2022-35708
Adobe Bridge SGI File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability
Published 2022-09-19 · Modified
7.8EPSS 0.006
CVE-2024-34094
ZDI-CAN-23474: Adobe Acrobat Reader DC Annotation Use-After-Free Remote Code Execution Vulnerability
Published 2024-05-15 · Analyzed
7.8EPSS 0.006
CVE-2019-19231
An insecure file access vulnerability exists in CA Client Automation 14.0, 14.1, 14.2, and 14.3 Agent for Windows that can allow a local attacker to gain escalated privileges.
Published 2019-12-20 · Modified
7.8EPSS 0.006
CVE-2022-35703
Adobe Bridge SVG File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability
Published 2022-09-19 · Modified
7.8EPSS 0.006
← Prev126 / 259Next →