VendorsMicrosoftwindowsall versions
Vulnerabilities

Microsoft Windows

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

10356CVEs
CVE-2023-38112
Foxit PDF Reader XFA Annotation Use-After-Free Remote Code Execution Vulnerability
Published 2024-05-03 · Analyzed
7.8EPSS 0.005
CVE-2023-38111
Foxit PDF Reader Annotation Use-After-Free Remote Code Execution Vulnerability
Published 2024-05-03 · Analyzed
7.8EPSS 0.005
CVE-2023-38107
Foxit PDF Reader Annotation Use-After-Free Remote Code Execution Vulnerability
Published 2024-05-03 · Analyzed
7.8EPSS 0.005
CVE-2023-38117
Foxit PDF Reader AcroForm Doc Object Use-After-Free Remote Code Execution Vulnerability
Published 2024-05-03 · Analyzed
7.8EPSS 0.005
CVE-2023-27366
Foxit PDF Reader Doc Object Use-After-Free Remote Code Execution Vulnerability
Published 2024-05-03 · Analyzed
7.8EPSS 0.005
CVE-2022-31676
VMware Tools (12.0.0, 11.x.y and 10.x.y) contains a local privilege escalation vulnerability. A malicious actor with local non-administrative access to the Guest OS can escalate privileges as a root user in the virtual machine.
Published 2022-08-23 · Modified
7.8EPSS 0.005
CVE-2024-36358
A link following vulnerability in Trend Micro Deep Security 20.x agents below build 20.0.1-3180 could allow a local attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.
Published 2024-06-10 · Analyzed
7.8EPSS 0.005
CVE-2024-45112
Acrobat Reader | Access of Resource Using Incompatible Type ('Type Confusion') (CWE-843)
Published 2024-09-13 · Analyzed
7.8EPSS 0.005
CVE-2023-38114
Foxit PDF Reader AcroForm Doc Object Use-After-Free Remote Code Execution Vulnerability
Published 2024-05-03 · Analyzed
7.8EPSS 0.005
CVE-2022-35705
Adobe Bridge MP4 File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability
Published 2022-09-19 · Modified
7.8EPSS 0.005
CVE-2022-35707
Adobe Bridge SGI File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability
Published 2022-09-19 · Modified
7.8EPSS 0.005
CVE-2022-38442
Adobe Dimension SKP File Parsing Use-After-Free Remote Code Execution Vulnerability
Published 2022-10-14 · Modified
7.8EPSS 0.005
CVE-2022-38444
Adobe Dimension SKP File Parsing Use-After-Free Remote Code Execution Vulnerability
Published 2022-10-14 · Modified
7.8EPSS 0.005
CVE-2021-28547
Adobe Creative Cloud for macOS Privilege Escalation Vulnerability
Published 2021-09-29 · Modified
7.8EPSS 0.005
CVE-2022-38426
Adobe Photoshop U3D File Parsing Uninitialized Variable Remote Code Execution Vulnerability
Published 2022-09-16 · Modified
7.8EPSS 0.005
CVE-2022-38427
Adobe Photoshop U3D File Parsing Uninitialized Variable Remote Code Execution Vulnerability
Published 2022-09-16 · Modified
7.8EPSS 0.005
CVE-2016-7081
Multiple heap-based buffer overflows in VMware Workstation Pro 12.x before 12.5.0 and VMware Workstation Player 12.x before 12.5.0 on Windows, when Cortado ThinPrint virtual printing is enabled, allow guest OS users to execute arbitrary code on the host OS via unspecified vectors.
Published 2016-12-29 · Modified
7.8EPSS 0.005
CVE-2019-15628
Trend Micro Security (Consumer) 2020 (v16.0.1221 and below) is affected by a DLL hijacking vulnerability that could allow an attacker to use a specific service as an execution and/or persistence mechanism which could execute a malicious program each time the service is started.
Published 2019-12-02 · Modified
7.8EPSS 0.005
CVE-2019-18895
Scanguard through 2019-11-12 on Windows has Insecure Permissions for the installation directory, leading to privilege escalation via a Trojan horse executable file.
Published 2019-11-14 · Modified
7.8EPSS 0.005
CVE-2024-53956
Premiere Pro | Heap-based Buffer Overflow (CWE-122)
Published 2024-12-10 · Analyzed
7.8EPSS 0.005
CVE-2022-38431
Adobe Photoshop SVG File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability
Published 2022-09-16 · Modified
7.8EPSS 0.005
CVE-2022-35676
Adobe FrameMaker SVG File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability
Published 2022-08-11 · Modified
7.8EPSS 0.005
CVE-2022-38414
Adobe InDesign SVG File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability
Published 2022-09-16 · Modified
7.8EPSS 0.005
CVE-2022-38402
Adobe InCopy SVG File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability
Published 2022-09-16 · Modified
7.8EPSS 0.005
CVE-2022-38413
Adobe InDesign SVG File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability
Published 2022-09-16 · Modified
7.8EPSS 0.005
CVE-2022-38433
Adobe Photoshop SVG File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability
Published 2022-09-16 · Modified
7.8EPSS 0.005
CVE-2022-35677
Adobe FrameMaker SVG File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability
Published 2022-08-11 · Modified
7.8EPSS 0.005
CVE-2022-38415
Adobe InDesign PCX File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability
Published 2022-09-16 · Modified
7.8EPSS 0.005
CVE-2022-38401
Adobe InCopy PCX File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability
Published 2022-09-16 · Modified
7.8EPSS 0.005
CVE-2024-30306
ZDI-CAN-23106: Adobe Acrobat Reader DC AcroForm Out-Of-Bounds Read Remote Code Execution Vulnerability
Published 2024-05-02 · Analyzed
7.8EPSS 0.005
CVE-2022-38429
Adobe Photoshop SVG File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability
Published 2022-09-16 · Modified
7.8EPSS 0.005
CVE-2022-38430
Adobe Photoshop MP4 File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability
Published 2022-09-16 · Modified
7.8EPSS 0.005
CVE-2022-34243
Adobe Photoshop U3D File Parsing Use-After-Free Remote Code Execution Vulnerability
Published 2022-07-15 · Modified
7.8EPSS 0.005
CVE-2023-22242
ZDI-CAN-19515: Adobe Acrobat Reader DC AcroForm Annotation Out-Of-Bounds Write Remote Code Execution Vulnerability
Published 2023-01-27 · Modified
7.8EPSS 0.005
CVE-2022-30644
Adobe Illustrator Font Parsing Use-After-Free Remote Code Execution Vulnerability
Published 2023-09-07 · Modified
7.8EPSS 0.005
CVE-2022-28835
Adobe InCopy Font Parsing Use-After-Free Remote Code Execution Vulnerability
Published 2023-09-11 · Modified
7.8EPSS 0.005
CVE-2020-10862
An issue was discovered in Avast Antivirus before 20. The aswTask RPC endpoint for the TaskEx library in the Avast Service (AvastSvc.exe) allows attackers to achieve Local Privilege Escalation (LPE) via RPC.
Published 2020-04-01 · Modified
7.8EPSS 0.005
CVE-2018-1459
IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, and 11.1 is vulnerable to stack based buffer overflow, caused by improper bounds checking which could lead an attacker to execute arbitrary code. IBM X-Force ID: 140210.
Published 2018-05-25 · Modified
7.8EPSS 0.005
CVE-2024-53959
Adobe Framemaker | Stack-based Buffer Overflow (CWE-121)
Published 2024-12-10 · Analyzed
7.8EPSS 0.005
CVE-2020-8146
In UniFi Video v3.10.1 (for Windows 7/8/10 x64) there is a Local Privileges Escalation to SYSTEM from arbitrary file deletion and DLL hijack vulnerabilities. The issue was fixed by adjusting the .tsExport folder when the controller is running on Windows and adjusting the SafeDllSearchMode in the windows registry when installing UniFi-Video controller. Affected Products: UniFi Video Controller v3.10.2 (for Windows 7/8/10 x64) and prior. Fixed in UniFi Video Controller v3.10.3 and newer.
Published 2020-04-01 · Modified
7.8EPSS 0.005
← Prev128 / 259Next →