VendorsMicrosoftwindowsall versions
Vulnerabilities

Microsoft Windows

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

10356CVEs
CVE-2016-8821
All versions of NVIDIA Windows GPU Display Driver contain a vulnerability in the kernel mode layer handler for DxgDdiEscape where improper access controls may allow a user to access arbitrary physical memory, leading to an escalation of privileges.
Published 2016-12-16 · Modified
7.8EPSS 0.003
CVE-2016-8824
All versions of NVIDIA Windows GPU Display Driver contain a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgDdiEscape where improper access controls allow a regular user to write a part of the registry intended for privileged users only, leading to escalation of privileges.
Published 2016-12-16 · Modified
7.8EPSS 0.003
CVE-2024-30296
When Animate parses FLA files, there is an out-of-bounds write vulnerability at animate+0x123df28
Published 2024-05-16 · Analyzed
7.8EPSS 0.003
CVE-2025-27161
Acrobat Reader | Out-of-bounds Read (CWE-125)
Published 2025-03-11 · Analyzed
7.8EPSS 0.003
CVE-2024-30297
When Adobe Animate parses FLA files, there is a heap out-of-bounds write vulnerability at Animate.exe+0x125D391
Published 2024-05-16 · Analyzed
7.8EPSS 0.003
CVE-2022-27535
Kaspersky VPN Secure Connection for Windows version up to 21.5 was vulnerable to arbitrary file deletion via abuse of its 'Delete All Service Data And Reports' feature by the local authenticated attacker.
Published 2022-08-05 · Modified
7.8EPSS 0.003
CVE-2024-39380
After Effects | Heap-based Buffer Overflow (CWE-122)
Published 2024-09-13 · Analyzed
7.8EPSS 0.003
CVE-2024-47443
After Effects | Out-of-bounds Write (CWE-787)
Published 2024-11-12 · Analyzed
7.8EPSS 0.003
CVE-2024-47442
After Effects | Out-of-bounds Write (CWE-787)
Published 2024-11-12 · Analyzed
7.8EPSS 0.003
CVE-2024-47441
After Effects | Out-of-bounds Write (CWE-787)
Published 2024-11-12 · Analyzed
7.8EPSS 0.003
CVE-2025-24453
InDesign Desktop | Heap-based Buffer Overflow (CWE-122)
Published 2025-03-11 · Analyzed
7.8EPSS 0.003
CVE-2024-45108
Photoshop Desktop | Out-of-bounds Write (CWE-787)
Published 2024-09-13 · Analyzed
7.8EPSS 0.003
CVE-2023-25859
Adobe Illustrator Improper Input Validation Remote Code Execution Vulnerability
Published 2023-03-22 · Modified
7.8EPSS 0.003
CVE-2025-27177
InDesign Desktop | Heap-based Buffer Overflow (CWE-122)
Published 2025-03-11 · Analyzed
7.8EPSS 0.003
CVE-2025-27162
Acrobat Reader | Access of Uninitialized Pointer (CWE-824)
Published 2025-03-11 · Analyzed
7.8EPSS 0.003
CVE-2024-45109
Photoshop Desktop | Out-of-bounds Write (CWE-787)
Published 2024-09-13 · Analyzed
7.8EPSS 0.003
CVE-2025-27171
InDesign Desktop | Heap-based Buffer Overflow (CWE-122)
Published 2025-03-11 · Analyzed
7.8EPSS 0.003
CVE-2024-45114
Illustrator | Out-of-bounds Write (CWE-787)
Published 2024-11-12 · Analyzed
7.8EPSS 0.003
CVE-2023-25880
ZDI-CAN-19412: Adobe Dimension GLTF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
Published 2023-03-28 · Modified
7.8EPSS 0.003
CVE-2020-5957
NVIDIA Windows GPU Display Driver, all versions, contains a vulnerability in the NVIDIA Control Panel component in which an attacker with local system access can corrupt a system file, which may lead to denial of service or escalation of privileges.
Published 2020-03-05 · Modified
7.8EPSS 0.003
CVE-2023-47057
ZDI-CAN-21764: Adobe Premiere Pro MP4 File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
Published 2023-11-16 · Modified
7.8EPSS 0.003
CVE-2023-26328
ZDI-CAN-20212: Adobe Dimension USD File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
Published 2023-03-28 · Modified
7.8EPSS 0.003
CVE-2023-25905
ZDI-CAN-20031: Adobe Dimension OBJ File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
Published 2023-03-28 · Modified
7.8EPSS 0.003
CVE-2025-4525
Discord WINSTA.dll uncontrolled search path
Published 2025-05-10 · Analyzed
7.8EPSS 0.003
CVE-2023-47046
ZDI-CAN-21684: Adobe Audition MP4 File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
Published 2023-11-16 · Modified
7.8EPSS 0.003
CVE-2023-47063
Adobe Illustrator 2023 CC 27.7 Memory Corruption Out-Of-Bounds-Write Vulnerability IV.
Published 2023-12-13 · Modified
7.8EPSS 0.003
CVE-2023-44330
Adobe Photoshop 2023 CC 24.7 Memory Corruption Vulnerability III.
Published 2023-11-16 · Modified
7.8EPSS 0.003
CVE-2022-22528
SAP Adaptive Server Enterprise (ASE) - version 16.0, installation makes an entry in the system PATH environment variable in Windows platform which, under certain conditions, allows a Standard User to execute malicious Windows binaries which may lead to privilege escalation on the local system. The issue is with the ASE installer and does not impact other ASE binaries.
Published 2022-02-09 · Modified
7.8EPSS 0.003
CVE-2025-30310
Dreamweaver Desktop | Access of Resource Using Incompatible Type ('Type Confusion') (CWE-843)
Published 2025-05-13 · Analyzed
7.8EPSS 0.003
CVE-2023-45252
DLL Hijacking vulnerability in Huddly HuddlyCameraService before version 8.0.7, not including version 7.99, due to the installation of the service in a directory that grants write privileges to standard users, allows attackers to manipulate files, execute arbitrary code, and escalate privileges.
Published 2023-12-01 · Modified
7.8EPSS 0.003
CVE-2024-41858
Adobe InCopy has an integer overflow vulnerability when parsing SVG file
Published 2024-08-14 · Analyzed
7.8EPSS 0.003
CVE-2025-49564
Illustrator | Stack-based Buffer Overflow (CWE-121)
Published 2025-08-12 · Analyzed
7.8EPSS 0.003
CVE-2025-5480
Action1 Uncontrolled Search Path Element Local Privilege Escalation Vulnerability
Published 2025-06-06 · Analyzed
7.8EPSS 0.003
CVE-2024-20753
Adobe Photoshop PDF File Parsing Memory Corruption Remote Code Execution Vulnerability
Published 2024-06-13 · Modified
7.8EPSS 0.003
CVE-2023-22239
Adobe After Effects Improper Input Validation Remote Code Execution Vulnerability
Published 2023-02-17 · Modified
7.8EPSS 0.003
CVE-2021-31776
Aviatrix VPN Client before 2.14.14 on Windows has an unquoted search path that enables local privilege escalation to the SYSTEM user, if the machine is misconfigured to allow unprivileged users to write to directories that are supposed to be restricted to administrators.
Published 2021-04-29 · Modified
7.8EPSS 0.003
CVE-2025-21158
InDesign Desktop | Integer Underflow (Wrap or Wraparound) (CWE-191)
Published 2025-02-11 · Analyzed
7.8EPSS 0.003
CVE-2026-81987
Acrobat Reader | Integer Overflow or Wraparound (CWE-190)
Published 2026-09-08 · Analyzed
7.8EPSS 0.003
CVE-2026-82007
Photoshop Desktop | Integer Overflow or Wraparound (CWE-190)
Published 2026-09-08 · Analyzed
7.8EPSS 0.003
CVE-2026-75863
Photoshop Desktop | Integer Overflow or Wraparound (CWE-190)
Published 2026-09-08 · Analyzed
7.8EPSS 0.003
← Prev144 / 259Next →