CWE-822 · 239 записей
Untrusted Pointer Dereference
CVE этого класса
239 записей
| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
79На этой неделе | CVE-2024-21338Готовый эксплойт | Windows Kernel Elevation of Privilege Vulnerabilitymicrosoft · windows 10 1809 · CWE-822 | Высокая7,8 | KEV | 59,8 % | 13 февр. 2024 г. |
69На этой неделе | CVE-2024-35250Готовый эксплойт | Windows Kernel-Mode Driver Elevation of Privilege Vulnerabilitymicrosoft · windows 10 1507 · CWE-822 | Высокая7,8 | KEV | 25,2 % | 11 июн. 2024 г. |
69На этой неделе | CVE-2023-29360Готовый эксплойт | Microsoft Streaming Service Elevation of Privilege Vulnerabilitymicrosoft · windows 10 1607 · CWE-822 | Высокая8,4 | KEV | 21,6 % | 13 июн. 2023 г. |
65На этой неделе | CVE-2023-36033Готовый эксплойт | Windows DWM Core Library Elevation of Privilege Vulnerabilitymicrosoft · windows 10 1809 · CWE-822 | Высокая7,8 | KEV | 12,0 % | 14 нояб. 2023 г. |
63На этой неделе | CVE-2025-24990Готовый эксплойт | Windows Agere Modem Driver Elevation of Privilege Vulnerabilitymicrosoft · windows 10 1507 · CWE-822 | Высокая7,8 | KEV | 6,4 % | 14 окт. 2025 г. |
51В плане | CVE-2023-21768Готовый эксплойт | Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerabilitymicrosoft · windows 11 · CWE-822 | Высокая7,8 | — | 65,4 % | 10 янв. 2023 г. |
42В плане | CVE-2025-50165Proof of concept | Windows Graphics Component Remote Code Execution Vulnerabilitymicrosoft · windows 11 24h2 · CWE-822 | Критическая9,8 | — | 10,3 % | 12 авг. 2025 г. |
41В плане | CVE-2018-17893Эксплойта нет | LAquis SCADA Versions 4.1.0.3870 and prior has an untrusted pointer dereference vulnerability, which may allow remote code execution.lcds · laquis scada · CWE-822 | Критическая9,8 | — | 6,4 % | 16 окт. 2018 г. |
40В плане | CVE-2018-14811Эксплойта нет | Fuji Electric V-Server 4.0.3.0 and prior, Multiple untrusted pointer dereference vulnerabilities have been identified, which may allow remotfujielectric · v-server firmware · CWE-822 | Критическая9,8 | — | 3,6 % | 26 сент. 2018 г. |
40В плане | CVE-2018-7497Эксплойта нет | In Advantech WebAccess versions V8.2_20170817 and prior, WebAccess versions V8.3.0 and prior, WebAccess Dashboard versions V.2.0.15 and prioadvantech · webaccess · CWE-822 | Критическая9,8 | — | 2,8 % | 15 мая 2018 г. |
40В плане | CVE-2023-1437Эксплойта нет | All versions prior to 9.1.4 of Advantech WebAccess/SCADA are vulnerable to use of untrusted pointers.advantech · webaccess\/scada · CWE-822 | Критическая9,8 | — | 2,8 % | 2 авг. 2023 г. |
39Наблюдать | CVE-2018-12548Эксплойта нет | In OpenJDK + Eclipse OpenJ9 version 0.11.0 builds, the public jdk.crypto.jniprovider.NativeCrypto class contains public static natives whicheclipse · openj9 · CWE-822 | Критическая9,8 | — | 1,1 % | 31 янв. 2019 г. |
39Наблюдать | CVE-2023-43518Эксплойта нет | Untrusted Pointer Dereference in Videoqualcomm · aqt1000 firmware · CWE-822 | Критическая9,8 | — | 0,3 % | 6 февр. 2024 г. |
37Наблюдать | CVE-2026-48137Эксплойта нет | Untrusted pointer dereference in NI grpc-device sideband streaming APIni · instrumentstudio · CWE-822 | Критическая9,3 | — | 0,8 % | 19 июн. 2026 г. |
36Наблюдать | CVE-2020-26991Эксплойта нет | A vulnerability has been identified in JT2Go (All versions < V13.1.0.2), Teamcenter Visualization (All versions < V13.1.0.2).siemens · jt2go · CWE-822 | Высокая8,8 | — | 4,0 % | 12 янв. 2021 г. |
36Наблюдать | CVE-2020-27259Эксплойта нет | The Omron CX-One Version 4.60 and prior may allow an attacker to supply a pointer to arbitrary memory locations, which may allow an attackeromron · cx-one · CWE-822 | Высокая8,8 | — | 2,7 % | 9 февр. 2021 г. |
36Наблюдать | CVE-2024-43624Эксплойта нет | Windows Hyper-V Shared Virtual Disk Elevation of Privilege Vulnerabilitymicrosoft · windows 10 1809 · CWE-822 | Высокая8,8 | — | 1,8 % | 12 нояб. 2024 г. |
36Наблюдать | CVE-2024-38104Эксплойта нет | Windows Fax Service Remote Code Execution Vulnerabilitymicrosoft · windows 10 1507 · CWE-822 | Высокая8,8 | — | 1,8 % | 9 июл. 2024 г. |
36Наблюдать | CVE-2026-67378Эксплойта нет | Microsoft SQL Server Remote Code Execution Vulnerabilitymicrosoft · sql server 2019 · CWE-822 | Критическая9,0 | — | 0,7 % | 8 сент. 2026 г. |
35Наблюдать | CVE-2024-37339Эксплойта нет | Microsoft SQL Server Native Scoring Remote Code Execution Vulnerabilitymicrosoft · sql 2016 azure connect feature pack · CWE-822 | Высокая8,8 | — | 1,6 % | 10 сент. 2024 г. |
35Наблюдать | CVE-2024-37340Эксплойта нет | Microsoft SQL Server Native Scoring Remote Code Execution Vulnerabilitymicrosoft · sql 2016 azure connect feature pack · CWE-822 | Высокая8,8 | — | 1,6 % | 10 сент. 2024 г. |
35Наблюдать | CVE-2025-62549Эксплойта нет | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerabilitymicrosoft · windows 10 1607 · CWE-822 | Высокая8,8 | — | 1,3 % | 9 дек. 2025 г. |
35Наблюдать | CVE-2026-33120Эксплойта нет | Microsoft SQL Server Remote Code Execution Vulnerabilitymicrosoft · sql server 2016 · CWE-822 | Высокая8,8 | — | 0,9 % | 14 апр. 2026 г. |
35Наблюдать | CVE-2024-36461Эксплойта нет | Direct access to memory pointers within the JS engine for modificationzabbix · zabbix · CWE-822 | Высокая8,8 | — | 0,8 % | 12 авг. 2024 г. |
35Наблюдать | CVE-2020-17392Эксплойта нет | This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.3-47255.parallels · parallels desktop · CWE-822 | Высокая8,8 | — | 0,5 % | 25 авг. 2020 г. |
- CVE-2024-2133879На этой неделе
Windows Kernel Elevation of Privilege Vulnerability
ВысокаяCVSS 7,8KEVГотовый эксплойтEPSS 60 %microsoft · windows 10 180913 февр. 2024 г.
- CVE-2024-3525069На этой неделе
Windows Kernel-Mode Driver Elevation of Privilege Vulnerability
ВысокаяCVSS 7,8KEVГотовый эксплойтEPSS 25 %microsoft · windows 10 150711 июн. 2024 г.
- CVE-2023-2936069На этой неделе
Microsoft Streaming Service Elevation of Privilege Vulnerability
ВысокаяCVSS 8,4KEVГотовый эксплойтEPSS 22 %microsoft · windows 10 160713 июн. 2023 г.
- CVE-2023-3603365На этой неделе
Windows DWM Core Library Elevation of Privilege Vulnerability
ВысокаяCVSS 7,8KEVГотовый эксплойтEPSS 12 %microsoft · windows 10 180914 нояб. 2023 г.
- CVE-2025-2499063На этой неделе
Windows Agere Modem Driver Elevation of Privilege Vulnerability
ВысокаяCVSS 7,8KEVГотовый эксплойтEPSS 6 %microsoft · windows 10 150714 окт. 2025 г.
- CVE-2023-2176851В плане
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
ВысокаяCVSS 7,8Готовый эксплойтEPSS 65 %microsoft · windows 1110 янв. 2023 г.
- CVE-2025-5016542В плане
Windows Graphics Component Remote Code Execution Vulnerability
КритическаяCVSS 9,8Proof of conceptEPSS 10 %microsoft · windows 11 24h212 авг. 2025 г.
- CVE-2018-1789341В плане
LAquis SCADA Versions 4.1.0.3870 and prior has an untrusted pointer dereference vulnerability, which may allow remote code execution.
КритическаяCVSS 9,8Эксплойта нетEPSS 6 %lcds · laquis scada16 окт. 2018 г.
- CVE-2018-1481140В плане
Fuji Electric V-Server 4.0.3.0 and prior, Multiple untrusted pointer dereference vulnerabilities have been identified, which may allow remot
КритическаяCVSS 9,8Эксплойта нетEPSS 4 %fujielectric · v-server firmware26 сент. 2018 г.
- CVE-2018-749740В плане
In Advantech WebAccess versions V8.2_20170817 and prior, WebAccess versions V8.3.0 and prior, WebAccess Dashboard versions V.2.0.15 and prio
КритическаяCVSS 9,8Эксплойта нетEPSS 3 %advantech · webaccess15 мая 2018 г.
- CVE-2023-143740В плане
All versions prior to 9.1.4 of Advantech WebAccess/SCADA are vulnerable to use of untrusted pointers.
КритическаяCVSS 9,8Эксплойта нетEPSS 3 %advantech · webaccess\/scada2 авг. 2023 г.
- CVE-2018-1254839Наблюдать
In OpenJDK + Eclipse OpenJ9 version 0.11.0 builds, the public jdk.crypto.jniprovider.NativeCrypto class contains public static natives which
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %eclipse · openj931 янв. 2019 г.
- CVE-2023-4351839Наблюдать
Untrusted Pointer Dereference in Video
КритическаяCVSS 9,8Эксплойта нетEPSS 0 %qualcomm · aqt1000 firmware6 февр. 2024 г.
- CVE-2026-4813737Наблюдать
Untrusted pointer dereference in NI grpc-device sideband streaming API
КритическаяCVSS 9,3Эксплойта нетEPSS 1 %ni · instrumentstudio19 июн. 2026 г.
- CVE-2020-2699136Наблюдать
A vulnerability has been identified in JT2Go (All versions < V13.1.0.2), Teamcenter Visualization (All versions < V13.1.0.2).
ВысокаяCVSS 8,8Эксплойта нетEPSS 4 %siemens · jt2go12 янв. 2021 г.
- CVE-2020-2725936Наблюдать
The Omron CX-One Version 4.60 and prior may allow an attacker to supply a pointer to arbitrary memory locations, which may allow an attacker
ВысокаяCVSS 8,8Эксплойта нетEPSS 3 %omron · cx-one9 февр. 2021 г.
- CVE-2024-4362436Наблюдать
Windows Hyper-V Shared Virtual Disk Elevation of Privilege Vulnerability
ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %microsoft · windows 10 180912 нояб. 2024 г.
- CVE-2024-3810436Наблюдать
Windows Fax Service Remote Code Execution Vulnerability
ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %microsoft · windows 10 15079 июл. 2024 г.
- CVE-2026-6737836Наблюдать
Microsoft SQL Server Remote Code Execution Vulnerability
КритическаяCVSS 9,0Эксплойта нетEPSS 1 %microsoft · sql server 20198 сент. 2026 г.
- CVE-2024-3733935Наблюдать
Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability
ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %microsoft · sql 2016 azure connect feature pack10 сент. 2024 г.
- CVE-2024-3734035Наблюдать
Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability
ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %microsoft · sql 2016 azure connect feature pack10 сент. 2024 г.
- CVE-2025-6254935Наблюдать
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %microsoft · windows 10 16079 дек. 2025 г.
- CVE-2026-3312035Наблюдать
Microsoft SQL Server Remote Code Execution Vulnerability
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %microsoft · sql server 201614 апр. 2026 г.
- CVE-2024-3646135Наблюдать
Direct access to memory pointers within the JS engine for modification
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %zabbix · zabbix12 авг. 2024 г.
- CVE-2020-1739235Наблюдать
This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.3-47255.
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %parallels · parallels desktop25 авг. 2020 г.