İçeriğe atla
Noroxi

CWE-824 · 268 kayıt

Access of Uninitialized Pointer

Bu sınıftaki CVE’ler

268 kayıt

  • CVE-2022-21971
    77Bu hafta

    Windows Runtime Remote Code Execution Vulnerability

    YüksekCVSS 7,8KEVSilahlaştırılmışEPSS %54

    microsoft · windows 10 18099 Şub 2022

  • CVE-2015-1770
    75Bu hafta

    Microsoft Office 2013 SP1 and 2013 RT SP1 allows remote attackers to execute arbitrary code via a crafted Office document, aka "Microsoft Of

    YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %35

    microsoft · office9 Haz 2015

  • CVE-2010-1818
    50Planlayın

    The IPersistPropertyBag2::Read function in QTPlugin.ocx in Apple QuickTime 6.x, 7.x before 7.6.8, and other versions allows remote attackers

    KritikCVSS 9,3SilahlaştırılmışEPSS %43

    apple · quicktime31 Ağu 2010

  • CVE-2018-11803
    48Planlayın

    Subversion's mod_dav_svn Apache HTTPD module versions 1.11.0 and 1.10.0 to 1.10.3 will crash after dereferencing an uninitialized pointer if

    YüksekCVSS 7,5İstismar yokEPSS %58

    apache · subversion5 Şub 2019

  • CVE-2017-12561
    48Planlayın

    A remote code execution vulnerability in HPE intelligent Management Center (iMC) PLAT version Plat 7.3 E0504P4 and earlier was found.

    KritikCVSS 9,8Kavram kanıtıEPSS %31

    hp · intelligent management center15 Şub 2018

  • CVE-2018-9948
    45Planlayın

    This vulnerability allows remote attackers to disclose sensitive information on vulnerable installations of Foxit Reader 9.0.0.29935.

    OrtaCVSS 6,5SilahlaştırılmışEPSS %63

    foxitsoftware · foxit reader17 May 2018

  • CVE-2019-0853
    44Planlayın

    A remote code execution vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in the memory, aka

    YüksekCVSS 8,8İstismar yokEPSS %30

    microsoft · windows 109 Nis 2019

  • CVE-2007-2442
    43Planlayın

    The gssrpc__svcauth_gssapi function in the RPC library in MIT Kerberos 5 (krb5) 1.6.1 and earlier might allow remote attackers to execute ar

    KritikCVSS 10,0İstismar yokEPSS %11

    mit · kerberos 526 Haz 2007

  • CVE-2009-0846
    43Planlayın

    The asn1_decode_generaltime function in lib/krb5/asn.1/asn1_decode.c in the ASN.1 GeneralizedTime decoder in MIT Kerberos 5 (aka krb5) befor

    KritikCVSS 10,0İstismar yokEPSS %9

    mit · kerberos 58 Nis 2009

  • CVE-2018-14356
    40Planlayın

    An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16.

    KritikCVSS 9,8İstismar yokEPSS %3

    mutt · mutt17 Tem 2018

  • CVE-2020-17446
    40Planlayın

    asyncpg before 0.21.0 allows a malicious PostgreSQL server to trigger a crash or execute arbitrary code (on a database client) via a crafted

    KritikCVSS 9,8İstismar yokEPSS %2

    magic · asyncpg12 Ağu 2020

  • CVE-2018-11743
    40Planlayın

    The init_copy function in kernel.c in mruby 1.4.1 makes initialize_copy calls for TT_ICLASS objects, which allows attackers to cause a denia

    KritikCVSS 9,8İstismar yokEPSS %2

    mruby · mruby5 Haz 2018

  • CVE-2020-25573
    40Planlayın

    An issue was discovered in the linked-hash-map crate before 0.5.3 for Rust.

    KritikCVSS 9,8İstismar yokEPSS %2

    linked-hash-map project · linked-hash-map14 Eyl 2020

  • CVE-2021-36219
    40Planlayın

    An issue was discovered in SKALE sgxwallet 1.58.3.

    KritikCVSS 9,8İstismar yokEPSS %2

    skale · sgxwallet27 Eyl 2021

  • CVE-2006-6143
    39İzleyin

    The RPC library in Kerberos 5 1.4 through 1.4.4, and 1.5 through 1.5.1, as used in Kerberos administration daemon (kadmind) and other produc

    KritikCVSS 9,3İstismar yokEPSS %8

    mit · kerberos 531 Ara 2006

  • CVE-2020-11138
    39İzleyin

    Uninitialized pointers accessed during music play back with incorrect bit stream due to an uninitialized heap memory result in instability i

    KritikCVSS 9,8İstismar yokEPSS %1

    qualcomm · apq800921 Oca 2021

  • CVE-2026-2805
    39İzleyin

    Invalid pointer in the DOM: Core & HTML component

    KritikCVSS 9,8İstismar yokEPSS %1

    mozilla · firefox24 Şub 2026

  • CVE-2026-2785
    39İzleyin

    Invalid pointer in the JavaScript Engine component

    KritikCVSS 9,8İstismar yokEPSS %0

    mozilla · firefox24 Şub 2026

  • Duplicate Advisory: Open Babel has uninitialized pointer dereference in GRO residue parser

    KritikCVSS 9,8İstismar yok

    PyPI · openbabel21 Tem 2023

  • Duplicate Advisory: Open Babel has uninitialized pointer dereference in PQS pFormat

    KritikCVSS 9,8İstismar yok

    PyPI · openbabel21 Tem 2023

  • Duplicate Advisory: Open Babel has out-of-bounds write in MOL2 attribute/value parser

    KritikCVSS 9,8İstismar yok

    PyPI · openbabel21 Tem 2023

  • CVE-2020-8882
    38İzleyin

    This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Studio Photo 3.6.6.916.

    YüksekCVSS 8,8İstismar yokEPSS %11

    foxitsoftware · foxit studio photo20 Mar 2020

  • CVE-2017-16378
    37İzleyin

    An issue was discovered in Adobe Acrobat and Reader: 2017.012.20098 and earlier versions, 2017.011.30066 and earlier versions, 2015.006.3035

    YüksekCVSS 8,8İstismar yokEPSS %7

    adobe · acrobat9 Ara 2017

  • CVE-2017-16377
    37İzleyin

    An issue was discovered in Adobe Acrobat and Reader: 2017.012.20098 and earlier versions, 2017.011.30066 and earlier versions, 2015.006.3035

    YüksekCVSS 8,8İstismar yokEPSS %7

    adobe · acrobat9 Ara 2017

  • CVE-2016-1005
    37İzleyin

    Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR

    YüksekCVSS 8,8İstismar yokEPSS %5

    adobe · flash player12 Mar 2016

Tüm zafiyet sınıfları