VendorsMicrosoftwindowsall versions
Vulnerabilities

Microsoft Windows

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

10351CVEs
CVE-2021-35989
Adobe Bridge PDF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
Published 2021-08-20 · Modified
9.3EPSS 0.037
CVE-2022-27789
Adobe Acrobat Reader DC AcroForm Use-After-Free Remote Code Execution Vulnerability
Published 2022-05-11 · Modified
9.3EPSS 0.037
CVE-2010-2211
Adobe Reader and Acrobat 9.x before 9.3.3, and 8.x before 8.2.3 on Windows and Mac OS X, allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2010-1295, CVE-2010-2202, CVE-2010-2207, CVE-2010-2209, CVE-2010-2210, and CVE-2010-2212.
Published 2010-06-30 · Modified
9.3EPSS 0.037
CVE-2010-1295
Adobe Reader and Acrobat 9.x before 9.3.3, and 8.x before 8.2.3 on Windows and Mac OS X, allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2010-2202, CVE-2010-2207, CVE-2010-2209, CVE-2010-2210, CVE-2010-2211, and CVE-2010-2212.
Published 2010-06-30 · Modified
9.3EPSS 0.037
CVE-2010-2202
Adobe Reader and Acrobat 9.x before 9.3.3, and 8.x before 8.2.3 on Windows and Mac OS X, allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2010-1295, CVE-2010-2207, CVE-2010-2209, CVE-2010-2210, CVE-2010-2211, and CVE-2010-2212.
Published 2010-06-30 · Modified
9.3EPSS 0.037
CVE-2010-2207
Adobe Reader and Acrobat 9.x before 9.3.3, and 8.x before 8.2.3 on Windows and Mac OS X, allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2010-1295, CVE-2010-2202, CVE-2010-2209, CVE-2010-2210, CVE-2010-2211, and CVE-2010-2212.
Published 2010-06-30 · Modified
9.3EPSS 0.037
CVE-2010-2209
Adobe Reader and Acrobat 9.x before 9.3.3, and 8.x before 8.2.3 on Windows and Mac OS X, allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2010-1295, CVE-2010-2202, CVE-2010-2207, CVE-2010-2210, CVE-2010-2211, and CVE-2010-2212.
Published 2010-06-30 · Modified
9.3EPSS 0.037
CVE-2021-36078
Adobe Bridge PDF File Parsing Memory Corruption Remote Code Execution Vulnerability
Published 2021-09-01 · Modified
9.3EPSS 0.037
CVE-2021-36059
Adobe Bridge Memory Corruption Vulnerability Could Lead to Arbitrary Code Execution
Published 2021-09-01 · Modified
9.3EPSS 0.037
CVE-2021-36067
Adobe Bridge Memory Corruption Vulnerability Could Lead to Arbitrary Code Execution
Published 2021-09-01 · Modified
9.3EPSS 0.037
CVE-2021-36068
Adobe Bridge Memory Corruption Vulnerability Could Lead to Arbitrary Code Execution
Published 2021-09-01 · Modified
9.3EPSS 0.037
CVE-2021-36076
Adobe Bridge Memory Corruption Vulnerability Could Lead to Arbitrary Code Execution
Published 2021-09-01 · Modified
9.3EPSS 0.037
CVE-2021-36069
Adobe Bridge Memory Corruption Vulnerability Could Lead to Arbitrary Code Execution
Published 2021-09-01 · Modified
9.3EPSS 0.037
CVE-2021-39816
Adobe Bridge Memory Corruption Vulnerability Could Lead to Arbitrary Code Execution
Published 2021-09-01 · Modified
9.3EPSS 0.037
CVE-2021-39817
Adobe Bridge Memory Corruption Vulnerability Could Lead to Arbitrary Code Execution
Published 2021-09-01 · Modified
9.3EPSS 0.037
CVE-2021-42721
Adobe Bridge Use After Free could lead to Arbitrary code execution
Published 2021-11-16 · Modified
9.3EPSS 0.037
CVE-2011-2105
Adobe Reader and Acrobat 8.x before 8.3, 9.x before 9.4.5, and 10.x before 10.1 on Windows and Mac OS X allow attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via crafted font data.
Published 2011-06-16 · Modified
9.3EPSS 0.037
CVE-2013-5325
Adobe Reader and Acrobat 11.x before 11.0.05 on Windows allow remote attackers to execute arbitrary JavaScript code in a javascript: URL via a crafted PDF document.
Published 2013-10-09 · Modified
9.3EPSS 0.036
CVE-2020-3713
Adobe Illustrator CC versions 24.0 and earlier have a memory corruption vulnerability. Successful exploitation could lead to arbitrary code execution.
Published 2020-01-29 · Modified
9.3EPSS 0.036
CVE-2017-2963
Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable memory corruption vulnerability in the image conversion engine, related to handling of the color profile in a TIFF file. Successful exploitation could lead to arbitrary code execution.
Published 2017-01-11 · Modified
9.3EPSS 0.036
CVE-2018-15998
Adobe Acrobat and Reader versions 2019.008.20081 and earlier, 2019.008.20080 and earlier, 2019.008.20081 and earlier, 2017.011.30106 and earlier version, 2017.011.30105 and earlier version, 2015.006.30457 and earlier, and 2015.006.30456 and earlier have a buffer errors vulnerability. Successful exploitation could lead to arbitrary code execution.
Published 2019-01-18 · Modified
9.3EPSS 0.036
CVE-2018-15990
Adobe Acrobat and Reader versions 2019.008.20081 and earlier, 2019.008.20080 and earlier, 2019.008.20081 and earlier, 2017.011.30106 and earlier version, 2017.011.30105 and earlier version, 2015.006.30457 and earlier, and 2015.006.30456 and earlier have an use after free vulnerability. Successful exploitation could lead to arbitrary code execution.
Published 2019-01-18 · Modified
9.3EPSS 0.036
CVE-2011-2458
Adobe Flash Player before 10.3.183.11 and 11.x before 11.1.102.55 on Windows, Mac OS X, Linux, and Solaris and before 11.1.102.59 on Android, and Adobe AIR before 3.1.0.4880, when Internet Explorer is used, allows remote attackers to bypass the cross-domain policy via a crafted web site.
Published 2011-11-11 · Modified
9.3EPSS 0.036
CVE-2020-3714
Adobe Illustrator CC versions 24.0 and earlier have a memory corruption vulnerability. Successful exploitation could lead to arbitrary code execution.
Published 2020-01-29 · Modified
9.3EPSS 0.036
CVE-2020-9567
Adobe Bridge versions 10.0.1 and earlier version have an use after free vulnerability. Successful exploitation could lead to arbitrary code execution .
Published 2020-06-26 · Modified
9.3EPSS 0.036
CVE-2020-9661
Adobe After Effects versions 17.1 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to arbitrary code execution .
Published 2020-06-25 · Modified
9.3EPSS 0.036
CVE-2020-3710
Adobe Illustrator CC versions 24.0 and earlier have a memory corruption vulnerability. Successful exploitation could lead to arbitrary code execution.
Published 2020-01-29 · Modified
9.3EPSS 0.036
CVE-2010-1286
Adobe Shockwave Player before 11.5.7.609 allows attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2010-1284, CVE-2010-1287, CVE-2010-1289, CVE-2010-1290, and CVE-2010-1291.
Published 2010-05-13 · Modified
9.3EPSS 0.036
CVE-2010-1287
Adobe Shockwave Player before 11.5.7.609 allows attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2010-1284, CVE-2010-1286, CVE-2010-1289, CVE-2010-1290, and CVE-2010-1291.
Published 2010-05-13 · Modified
9.3EPSS 0.036
CVE-2010-1291
Adobe Shockwave Player before 11.5.7.609 allows attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2010-1284, CVE-2010-1286, CVE-2010-1287, CVE-2010-1289, and CVE-2010-1290.
Published 2010-05-13 · Modified
9.3EPSS 0.036
CVE-2011-4186
Heap-based buffer overflow in nipplib.dll in Novell iPrint Client before 5.78 on Windows allows remote attackers to execute arbitrary code via a crafted client-file-name parameter in a printer-url, a different vulnerability than CVE-2011-1705.
Published 2012-02-20 · Modified
9.3EPSS 0.036
CVE-2017-2957
Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable use after free vulnerability in the JavaScript engine, related to collaboration functionality. Successful exploitation could lead to arbitrary code execution.
Published 2017-01-11 · Modified
9.3EPSS 0.035
CVE-2011-0610
The CoolType library in Adobe Reader 9.x before 9.4.4 and 10.x through 10.0.1 on Windows, Adobe Reader 9.x before 9.4.4 and 10.x before 10.0.3 on Mac OS X, and Adobe Acrobat 9.x before 9.4.4 and 10.x before 10.0.3 on Windows and Mac OS X allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors.
Published 2011-05-03 · Modified
9.3EPSS 0.035
CVE-2009-1792
The system.openURL function in StoneTrip Ston3D StandalonePlayer (aka S3DPlayer StandAlone) 1.6.2.4 and 1.7.0.1 and WebPlayer (aka S3DPlayer Web) 1.6.0.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the first argument (the sURL argument).
Published 2009-05-29 · Modified
9.3EPSS 0.035
CVE-2020-9662
Adobe After Effects versions 17.1 and earlier have an out-of-bounds write vulnerability. Successful exploitation could lead to arbitrary code execution .
Published 2020-06-25 · Modified
9.3EPSS 0.035
CVE-2019-7079
Adobe Acrobat and Reader versions 2019.010.20069 and earlier, 2019.010.20069 and earlier, 2017.011.30113 and earlier version, and 2015.006.30464 and earlier have an out-of-bounds write vulnerability. Successful exploitation could lead to arbitrary code execution .
Published 2019-05-24 · Modified
9.3EPSS 0.035
CVE-2021-21044
Acrobat Reader DC Out-Of-Bounds Write Vulnerability Could Lead To Arbitrary Code Execution
Published 2021-02-11 · Modified
9.3EPSS 0.035
CVE-2022-28242
Adobe Acrobat Reader DC Annotation Use-After-Free Remote Code Execution Vulnerability
Published 2022-05-11 · Modified
9.3EPSS 0.035
CVE-2009-4764
Adobe Reader 8.x and 9.x on Windows is able to execute EXE files that are embedded in a PDF document, which makes it easier for remote attackers to trick users into executing arbitrary code via a crafted document.
Published 2010-04-05 · Modified
9.3EPSS 0.035
CVE-2017-2955
Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable use after free vulnerability in the JavaScript engine. Successful exploitation could lead to arbitrary code execution.
Published 2017-01-11 · Modified
9.3EPSS 0.035
← Prev60 / 259Next →