CVE Database
Synced from NVD, cross-referenced against CISA KEV and EPSS · ordered by last update
| CVE ID | Score | Description |
|---|---|---|
| Exploit 1mo ago | 7.8 | Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. |
| Exploit 1mo ago | 7.8 | Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. |
| Exploit 1mo ago | 7.8 | Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. |
| Exploit 1mo ago | 7.8 | Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. |
| Exploit 1mo ago | 7.8 | Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. |
| KEV 1mo ago | 7.8 | Use after free in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally. |
| 1mo ago | 7.8 | Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally. |
| 1mo ago | 7.8 | Incomplete list of disallowed inputs in Microsoft Office OneNote allows an unauthorized attacker to bypass a security feature locally. |
| 1mo ago | 7.8 | Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally. |
| 1mo ago | 7.5 | Improper input validation in Microsoft Office Word allows an unauthorized attacker to bypass a security feature over a network. |
| 1mo ago | 7.8 | Untrusted pointer dereference in Windows Kernel Memory allows an authorized attacker to elevate privileges locally. |
| 1mo ago | 7.8 | Improper input validation in Windows Mobile Broadband allows an authorized attacker to elevate privileges locally. |
| 1mo ago | 7.5 | Improper access control in Active Directory Domain Services allows an authorized attacker to elevate privileges over a network. |
| 1mo ago | 7.1 | Insecure storage of sensitive information in Windows Kerberos allows an authorized attacker to bypass a security feature locally. |
| 1mo ago | 7.5 | Exposure of sensitive information to an unauthorized actor in Outlook for Android allows an unauthorized attacker to disclose information over a network. |
| 1mo ago | 7.3 | Improper access control in Visual Studio allows an authorized attacker to elevate privileges locally. |
| 1mo ago | 7.3 | Improper access control in Visual Studio allows an authorized attacker to elevate privileges locally. |
| 1mo ago | 7.8 | Incorrect default permissions in Microsoft AutoUpdate (MAU) allows an authorized attacker to elevate privileges locally. |
| 1mo ago | 7.8 | Improper privilege management in Microsoft AutoUpdate (MAU) allows an authorized attacker to elevate privileges locally. |
| 1mo ago | 8.8 | Improper authorization in Microsoft Office SharePoint allows an authorized attacker to execute code over a network. |
| 1mo ago | 7.2 | Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network. |
| 1mo ago | 7.3 | Use after free in Microsoft Office allows an authorized attacker to elevate privileges locally. |
| 1mo ago | 7.8 | Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally. |
| 1mo ago | 7.8 | Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally. |
| 1mo ago | 7.8 | Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally. |
| 1mo ago | 7.8 | Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally. |
| 1mo ago | 7.8 | Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. |
| 1mo ago | 7.8 | Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. |
| 1mo ago | 7.8 | Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally. |
| 1mo ago | 7.8 | Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. |