VendorsMicrosoftwindowsall versions
Vulnerabilities

Microsoft Windows

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

10356CVEs
CVE-2023-26402
ZDI-CAN-20237: Adobe Substance 3D Stager USD File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability
Published 2023-04-12 · Modified
7.8EPSS 0.003
CVE-2023-26411
ZDI-CAN-20312: Adobe Substance 3D Designer USDC File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability
Published 2023-04-13 · Modified
7.8EPSS 0.003
CVE-2023-26371
Validate Your Inputs | Out-of-bounds Read (CWE-125)
Published 2023-04-12 · Modified
7.8EPSS 0.003
CVE-2023-26398
ZDI-CAN-20310: Adobe Substance 3D Designer USDC File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability
Published 2023-04-13 · Modified
7.8EPSS 0.003
CVE-2023-26393
ZDI-CAN-20234: Adobe Substance 3D Stager USD File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability
Published 2023-04-12 · Modified
7.8EPSS 0.003
CVE-2022-34251
Adobe InCopy Font Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
Published 2022-07-15 · Modified
7.8EPSS 0.003
CVE-2022-34247
Adobe InDesign Font Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
Published 2022-07-15 · Modified
7.8EPSS 0.003
CVE-2023-26409
ZDI-CAN-20313: Adobe Substance 3D Designer USD File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability
Published 2023-04-13 · Modified
7.8EPSS 0.003
CVE-2023-26389
ZDI-CAN-20258: Adobe Substance 3D Stager USDC File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability
Published 2023-04-12 · Modified
7.8EPSS 0.003
CVE-2023-26391
ZDI-CAN-20256: Adobe Substance 3D Stager USD File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability
Published 2023-04-12 · Modified
7.8EPSS 0.003
CVE-2024-49528
Animate | Out-of-bounds Write (CWE-787)
Published 2024-11-12 · Analyzed
7.8EPSS 0.003
CVE-2021-21088
Adobe Acrobat Pro DC Use-After-Free Remote Code Execution Vulnerability
Published 2023-09-06 · Modified
7.8EPSS 0.003
CVE-2022-33158
Trend Micro VPN Proxy Pro version 5.2.1026 and below contains a vulnerability involving some overly permissive folders in a key directory which could allow a local attacker to obtain privilege escalation on an affected system.
Published 2022-07-29 · Modified
7.8EPSS 0.003
CVE-2021-3606
OpenVPN before version 2.5.3 on Windows allows local users to load arbitrary dynamic loadable libraries via an OpenSSL configuration file if present, which allows the user to run arbitrary code with the same privilege level as the main OpenVPN process (openvpn.exe).
Published 2021-07-02 · Modified
7.8EPSS 0.003
CVE-2025-54257
Acrobat Reader | Use After Free (CWE-416)
Published 2025-09-09 · Modified
7.8EPSS 0.003
CVE-2023-38042
A local privilege escalation vulnerability in Ivanti Secure Access Client for Windows allows a low privileged user to execute code as SYSTEM.
Published 2024-05-31 · Analyzed
7.8EPSS 0.003
CVE-2023-21596
Adobe InCopy Improper Input Validation Remote Code Execution Vulnerability
Published 2023-01-13 · Modified
7.8EPSS 0.003
CVE-2023-26332
ZDI-CAN-20144: Adobe Dimension USD File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability
Published 2023-03-28 · Modified
7.8EPSS 0.003
CVE-2023-26331
ZDI-CAN-20145: Adobe Dimension USD File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability
Published 2023-03-28 · Modified
7.8EPSS 0.003
CVE-2021-43027
Adobe After Effects TIF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability
Published 2023-09-07 · Modified
7.8EPSS 0.003
CVE-2023-26368
Adobe InCopy Out-of-Bounds Read Vulnerability v1.0
Published 2023-11-16 · Modified
7.8EPSS 0.003
CVE-2023-26327
ZDI-CAN-20217: Adobe Dimension GLTF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability
Published 2023-03-28 · Modified
7.8EPSS 0.003
CVE-2021-44188
Adobe After Effects 3GP File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability
Published 2023-09-07 · Modified
7.8EPSS 0.003
CVE-2016-2826
The maintenance service in Mozilla Firefox before 47.0 and Firefox ESR 45.x before 45.2 on Windows does not prevent MAR extracted-file modification during updater execution, which might allow local users to gain privileges via a Trojan horse file.
Published 2016-06-13 · Modified
7.8EPSS 0.003
CVE-2023-7016
Privilege Escalation in SafeNet Authentication Client
Published 2024-02-27 · Analyzed
7.8EPSS 0.003
CVE-2016-7086
The installer in VMware Workstation Pro 12.x before 12.5.0 and VMware Workstation Player 12.x before 12.5.0 on Windows allows local users to gain privileges via a Trojan horse setup64.exe file in the installation directory.
Published 2016-12-29 · Modified
7.8EPSS 0.003
CVE-2024-30289
Adobe FrameMaker XLS File Parsing Buffer Overflow
Published 2024-05-16 · Analyzed
7.8EPSS 0.003
CVE-2025-27194
Media Encoder | Out-of-bounds Write (CWE-787)
Published 2025-04-08 · Analyzed
7.8EPSS 0.003
CVE-2024-45143
Substance3D - Stager | Heap-based Buffer Overflow (CWE-122)
Published 2024-10-09 · Analyzed
7.8EPSS 0.003
CVE-2024-47450
Illustrator | Heap-based Buffer Overflow (CWE-122)
Published 2024-11-12 · Analyzed
7.8EPSS 0.003
CVE-2024-20781
Adobe Indesign TIF File Parsing Heap Memory Corruption
Published 2024-07-09 · Modified
7.8EPSS 0.003
CVE-2016-2556
The Escape interface in the Kernel Mode Driver layer in the NVIDIA GPU graphics driver R340 before 341.95 and R352 before 354.74 on Windows improperly allows access to restricted functionality, which allows local users to gain privileges via unspecified vectors.
Published 2016-04-12 · Modified
7.8EPSS 0.003
CVE-2024-30288
Adobe FrameMaker 3DS File Parsing Heap Memory Corruption
Published 2024-05-16 · Analyzed
7.8EPSS 0.003
CVE-2024-45139
Substance3D - Stager | Heap-based Buffer Overflow (CWE-122)
Published 2024-10-09 · Analyzed
7.8EPSS 0.003
CVE-2021-43018
Adobe Photoshop JPEG2000 Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
Published 2023-09-07 · Modified
7.8EPSS 0.003
CVE-2020-7289
Privilege Escalation vulnerability in MAR for Windows
Published 2020-05-08 · Modified
7.8EPSS 0.003
CVE-2024-20791
Illustrator 2024 BMP File Parsing Memory Corruption
Published 2024-05-16 · Analyzed
7.8EPSS 0.003
CVE-2023-47047
ZDI-CAN-21685: Adobe Audition MP4 File Parsing Uninitialized Variable Remote Code Execution Vulnerability
Published 2023-11-16 · Modified
7.8EPSS 0.003
CVE-2022-30703
Trend Micro Security 2021 and 2022 (Consumer) is vulnerable to an exposed dangerous method vulnerability that could allow an attacker to obtain access to leaked kernel addresses and disclose sensitive information. This vulnerability could also potentially be chained for privilege escalation.
Published 2022-06-09 · Modified
7.8EPSS 0.003
CVE-2023-48632
ZDI-CAN-22172: Adobe After Effects AEP File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
Published 2023-12-13 · Modified
7.8EPSS 0.003
← Prev141 / 259Next →