CWE-787 · 10.893 kayıt
Out-of-bounds Write
Bu sınıftaki CVE’ler
10.000 kayıt
| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
99Hemen | CVE-2015-3113Silahlaştırılmış | Heap-based buffer overflow in Adobe Flash Player before 13.0.0.296 and 14.x through 18.x before 18.0.0.194 on Windows and OS X and before 11adobe · flash player · CWE-787 | Kritik9,8 | KEV | %99,9 | 23 Haz 2015 |
99Hemen | CVE-2023-34048Silahlaştırılmış | VMware vCenter Server Out-of-Bounds Write Vulnerabilityvmware · vcenter server · CWE-787 | Kritik9,8 | KEV | %99,4 | 25 Eki 2023 |
98Hemen | CVE-2019-5544Silahlaştırılmış | OpenSLP as used in ESXi and the Horizon DaaS appliances has a heap overwrite issue.openslp · openslp · CWE-787 | Kritik9,8 | KEV | %97,3 | 6 Ara 2019 |
97Hemen | CVE-2021-35211Silahlaştırılmış | Serv-U Remote Memory Escape Vulnerabilitysolarwinds · serv-u · CWE-787 | Kritik10,0 | KEV | %91,2 | 14 Tem 2021 |
96Hemen | CVE-2011-2462Silahlaştırılmış | Unspecified vulnerability in the U3D component in Adobe Reader and Acrobat 10.1.1 and earlier on Windows and Mac OS X, and Adobe Reader 9.x adobe · acrobat · CWE-787 | Kritik9,8 | KEV | %88,5 | 7 Ara 2011 |
95Hemen | CVE-2023-4863Silahlaştırılmış | Heap buffer overflow in libwebp in Google Chrome prior to 116.0.5845.187 and libwebp 1.3.2 allowed a remote attacker to perform an out of bogoogle · chrome · CWE-787 | Yüksek8,8 | KEV | %100,0 | 12 Eyl 2023 |
95Hemen | CVE-2021-31755Silahlaştırılmış | An issue was discovered on Tenda AC11 devices with firmware through 02.03.01.104_CN.tenda · ac11 firmware · CWE-787 | Kritik9,8 | KEV | %86,9 | 7 May 2021 |
94Hemen | CVE-2018-0798Silahlaştırılmış | Equation Editor in Microsoft Office 2007, Microsoft Office 2010, Microsoft Office 2013, and Microsoft Office 2016 allows a remote code execumicrosoft · office · CWE-787 | Yüksek8,8 | KEV | %95,1 | 9 Oca 2018 |
94Hemen | CVE-2025-9242Silahlaştırılmış | WatchGuard Firebox iked Out of Bounds Write Vulnerabilitywatchguard · fireware · CWE-787 | Kritik9,3 | KEV | %91,3 | 17 Eyl 2025 |
94Hemen | CVE-2024-21762Silahlaştırılmış | A out-of-bounds write in Fortinet FortiOS versions 7.4.0 through 7.4.2, 7.2.0 through 7.2.6, 7.0.0 through 7.0.13, 6.4.0 through 6.4.14, 6.2fortinet · fortiproxy · CWE-787 | Kritik9,8 | KEV | %83,4 | 9 Şub 2024 |
94Hemen | CVE-2020-14871Silahlaştırılmış | Vulnerability in the Oracle Solaris product of Oracle Systems (component: Pluggable authentication module).oracle · solaris · CWE-787 | Kritik10,0 | KEV | %80,2 | 21 Eki 2020 |
93Hemen | CVE-2013-3346Silahlaştırılmış | Adobe Reader and Acrobat 9.x before 9.5.5, 10.x before 10.1.7, and 11.x before 11.0.03 allow attackers to execute arbitrary code or cause a adobe · acrobat · CWE-787 | Kritik9,8 | KEV | %78,9 | 30 Ağu 2013 |
91Hemen | CVE-2008-2992Silahlaştırılmış | Stack-based buffer overflow in Adobe Acrobat and Reader 8.1.2 and earlier allows remote attackers to execute arbitrary code via a PDF file tadobe · acrobat · CWE-787 | Yüksek7,8 | KEV | %98,5 | 4 Kas 2008 |
91Hemen | CVE-2015-3043Silahlaştırılmış | Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attadobe · flash player · CWE-787 | Kritik9,8 | KEV | %73,9 | 14 Nis 2015 |
91Hemen | CVE-2010-4344Silahlaştırılmış | Heap-based buffer overflow in the string_vformat function in string.c in Exim before 4.70 allows remote attackers to execute arbitrary code exim · exim · CWE-787 | Kritik9,8 | KEV | %71,7 | 14 Ara 2010 |
90Hemen | CVE-2015-1641Silahlaştırılmış | Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word 2013 SP1, Word 2013 RT SP1, Word for Mac 2011, Office Compatibility Pack SP3, microsoft · office · CWE-787 | Yüksek7,8 | KEV | %96,7 | 14 Nis 2015 |
90Hemen | CVE-2012-1889Silahlaştırılmış | Microsoft XML Core Services 3.0, 4.0, 5.0, and 6.0 accesses uninitialized memory locations, which allows remote attackers to execute arbitramicrosoft · xml core services · CWE-787 | Yüksek8,8 | KEV | %83,5 | 13 Haz 2012 |
90Hemen | CVE-2009-3953Silahlaştırılmış | The U3D implementation in Adobe Reader and Acrobat 9.x before 9.3, 8.x before 8.2 on Windows and Mac OS X, and 7.x before 7.1.4 allows remotadobe · acrobat · CWE-787 | Yüksek8,8 | KEV | %83,2 | 13 Oca 2010 |
90Hemen | CVE-2016-7200Silahlaştırılmış | The Chakra JavaScript scripting engine in Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (memmicrosoft · edge · CWE-787 | Yüksek8,8 | KEV | %82,8 | 10 Kas 2016 |
89Hemen | CVE-2021-4034Silahlaştırılmış | A local privilege escalation vulnerability was found on polkit's pkexec utility.polkit project · polkit · CWE-787 | Yüksek7,8 | KEV | %94,3 | 28 Oca 2022 |
89Hemen | CVE-2018-0802Silahlaştırılmış | Equation Editor in Microsoft Office 2007, Microsoft Office 2010, Microsoft Office 2013, and Microsoft Office 2016 allow a remote code executmicrosoft · office · CWE-787 | Yüksek7,8 | KEV | %93,3 | 9 Oca 2018 |
89Hemen | CVE-2012-0754Silahlaştırılmış | Adobe Flash Player before 10.3.183.15 and 11.x before 11.1.102.62 on Windows, Mac OS X, Linux, and Solaris; before 11.1.111.6 on Android 2.xadobe · flash player · CWE-787 | Yüksek8,1 | KEV | %91,2 | 16 Şub 2012 |
88Hemen | CVE-2016-0189Silahlaştırılmış | The Microsoft (1) JScript 5.8 and (2) VBScript 5.7 and 5.8 engines, as used in Internet Explorer 9 through 11 and other products, allow remomicrosoft · jscript · CWE-787 | Yüksek7,5 | KEV | %94,1 | 10 May 2016 |
88Hemen | CVE-2010-3333Silahlaştırılmış | Stack-based buffer overflow in Microsoft Office XP SP3, Office 2003 SP3, Office 2007 SP2, Office 2010, Office 2004 and 2008 for Mac, Office microsoft · office · CWE-787 | Yüksek7,8 | KEV | %89,5 | 9 Kas 2010 |
87Hemen | CVE-2013-0640Silahlaştırılmış | Adobe Reader and Acrobat 9.x before 9.5.4, 10.x before 10.1.6, and 11.x before 11.0.02 allow remote attackers to execute arbitrary code or cadobe · acrobat · CWE-787 | Yüksek7,8 | KEV | %86,9 | 13 Şub 2013 |
- CVE-2015-311399Hemen
Heap-based buffer overflow in Adobe Flash Player before 13.0.0.296 and 14.x through 18.x before 18.0.0.194 on Windows and OS X and before 11
KritikCVSS 9,8KEVSilahlaştırılmışEPSS %100adobe · flash player23 Haz 2015
- CVE-2023-3404899Hemen
VMware vCenter Server Out-of-Bounds Write Vulnerability
KritikCVSS 9,8KEVSilahlaştırılmışEPSS %99vmware · vcenter server25 Eki 2023
- CVE-2019-554498Hemen
OpenSLP as used in ESXi and the Horizon DaaS appliances has a heap overwrite issue.
KritikCVSS 9,8KEVSilahlaştırılmışEPSS %97openslp · openslp6 Ara 2019
- CVE-2021-3521197Hemen
Serv-U Remote Memory Escape Vulnerability
KritikCVSS 10,0KEVSilahlaştırılmışEPSS %91solarwinds · serv-u14 Tem 2021
- CVE-2011-246296Hemen
Unspecified vulnerability in the U3D component in Adobe Reader and Acrobat 10.1.1 and earlier on Windows and Mac OS X, and Adobe Reader 9.x
KritikCVSS 9,8KEVSilahlaştırılmışEPSS %89adobe · acrobat7 Ara 2011
- CVE-2023-486395Hemen
Heap buffer overflow in libwebp in Google Chrome prior to 116.0.5845.187 and libwebp 1.3.2 allowed a remote attacker to perform an out of bo
YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %100google · chrome12 Eyl 2023
- CVE-2021-3175595Hemen
An issue was discovered on Tenda AC11 devices with firmware through 02.03.01.104_CN.
KritikCVSS 9,8KEVSilahlaştırılmışEPSS %87tenda · ac11 firmware7 May 2021
- CVE-2018-079894Hemen
Equation Editor in Microsoft Office 2007, Microsoft Office 2010, Microsoft Office 2013, and Microsoft Office 2016 allows a remote code execu
YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %95microsoft · office9 Oca 2018
- CVE-2025-924294Hemen
WatchGuard Firebox iked Out of Bounds Write Vulnerability
KritikCVSS 9,3KEVSilahlaştırılmışEPSS %91watchguard · fireware17 Eyl 2025
- CVE-2024-2176294Hemen
A out-of-bounds write in Fortinet FortiOS versions 7.4.0 through 7.4.2, 7.2.0 through 7.2.6, 7.0.0 through 7.0.13, 6.4.0 through 6.4.14, 6.2
KritikCVSS 9,8KEVSilahlaştırılmışEPSS %83fortinet · fortiproxy9 Şub 2024
- CVE-2020-1487194Hemen
Vulnerability in the Oracle Solaris product of Oracle Systems (component: Pluggable authentication module).
KritikCVSS 10,0KEVSilahlaştırılmışEPSS %80oracle · solaris21 Eki 2020
- CVE-2013-334693Hemen
Adobe Reader and Acrobat 9.x before 9.5.5, 10.x before 10.1.7, and 11.x before 11.0.03 allow attackers to execute arbitrary code or cause a
KritikCVSS 9,8KEVSilahlaştırılmışEPSS %79adobe · acrobat30 Ağu 2013
- CVE-2008-299291Hemen
Stack-based buffer overflow in Adobe Acrobat and Reader 8.1.2 and earlier allows remote attackers to execute arbitrary code via a PDF file t
YüksekCVSS 7,8KEVSilahlaştırılmışEPSS %98adobe · acrobat4 Kas 2008
- CVE-2015-304391Hemen
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows att
KritikCVSS 9,8KEVSilahlaştırılmışEPSS %74adobe · flash player14 Nis 2015
- CVE-2010-434491Hemen
Heap-based buffer overflow in the string_vformat function in string.c in Exim before 4.70 allows remote attackers to execute arbitrary code
KritikCVSS 9,8KEVSilahlaştırılmışEPSS %72exim · exim14 Ara 2010
- CVE-2015-164190Hemen
Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word 2013 SP1, Word 2013 RT SP1, Word for Mac 2011, Office Compatibility Pack SP3,
YüksekCVSS 7,8KEVSilahlaştırılmışEPSS %97microsoft · office14 Nis 2015
- CVE-2012-188990Hemen
Microsoft XML Core Services 3.0, 4.0, 5.0, and 6.0 accesses uninitialized memory locations, which allows remote attackers to execute arbitra
YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %84microsoft · xml core services13 Haz 2012
- CVE-2009-395390Hemen
The U3D implementation in Adobe Reader and Acrobat 9.x before 9.3, 8.x before 8.2 on Windows and Mac OS X, and 7.x before 7.1.4 allows remot
YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %83adobe · acrobat13 Oca 2010
- CVE-2016-720090Hemen
The Chakra JavaScript scripting engine in Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (mem
YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %83microsoft · edge10 Kas 2016
- CVE-2021-403489Hemen
A local privilege escalation vulnerability was found on polkit's pkexec utility.
YüksekCVSS 7,8KEVSilahlaştırılmışEPSS %94polkit project · polkit28 Oca 2022
- CVE-2018-080289Hemen
Equation Editor in Microsoft Office 2007, Microsoft Office 2010, Microsoft Office 2013, and Microsoft Office 2016 allow a remote code execut
YüksekCVSS 7,8KEVSilahlaştırılmışEPSS %93microsoft · office9 Oca 2018
- CVE-2012-075489Hemen
Adobe Flash Player before 10.3.183.15 and 11.x before 11.1.102.62 on Windows, Mac OS X, Linux, and Solaris; before 11.1.111.6 on Android 2.x
YüksekCVSS 8,1KEVSilahlaştırılmışEPSS %91adobe · flash player16 Şub 2012
- CVE-2016-018988Hemen
The Microsoft (1) JScript 5.8 and (2) VBScript 5.7 and 5.8 engines, as used in Internet Explorer 9 through 11 and other products, allow remo
YüksekCVSS 7,5KEVSilahlaştırılmışEPSS %94microsoft · jscript10 May 2016
- CVE-2010-333388Hemen
Stack-based buffer overflow in Microsoft Office XP SP3, Office 2003 SP3, Office 2007 SP2, Office 2010, Office 2004 and 2008 for Mac, Office
YüksekCVSS 7,8KEVSilahlaştırılmışEPSS %89microsoft · office9 Kas 2010
- CVE-2013-064087Hemen
Adobe Reader and Acrobat 9.x before 9.5.4, 10.x before 10.1.6, and 11.x before 11.0.02 allow remote attackers to execute arbitrary code or c
YüksekCVSS 7,8KEVSilahlaştırılmışEPSS %87adobe · acrobat13 Şub 2013