Microsoft

Windows

91 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 34.61%
  • Veröffentlicht 10.12.2014 21:59:21
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Integer overflow in Adobe Reader and Acrobat 10.x before 10.1.13 and 11.x before 11.0.10 on Windows and OS X allows attackers to execute arbitrary code via unspecified vectors.

  • EPSS 16.04%
  • Veröffentlicht 10.12.2014 21:59:20
  • Zuletzt bearbeitet 06.05.2026 22:30:45

An unspecified JavaScript API in Adobe Reader and Acrobat 10.x before 10.1.13 and 11.x before 11.0.10 on Windows and OS X allows attackers to obtain sensitive information via unknown vectors, a different vulnerability than CVE-2014-8451.

  • EPSS 18.1%
  • Veröffentlicht 10.12.2014 21:59:20
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Adobe Reader and Acrobat 10.x before 10.1.13 and 11.x before 11.0.10 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2014-8445,...

  • EPSS 22.24%
  • Veröffentlicht 10.12.2014 21:59:19
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Adobe Reader and Acrobat 10.x before 10.1.13 and 11.x before 11.0.10 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2014-8445,...

  • EPSS 18.1%
  • Veröffentlicht 10.12.2014 21:59:18
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Adobe Reader and Acrobat 10.x before 10.1.13 and 11.x before 11.0.10 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2014-8446,...

Exploit
  • EPSS 29.6%
  • Veröffentlicht 16.10.2014 00:55:06
  • Zuletzt bearbeitet 06.05.2026 22:30:45

lib/TWiki/Sandbox.pm in TWiki 6.0.0 and earlier, when running on Windows, allows remote attackers to bypass intended access restrictions and upload files with restricted names via a null byte (%00) in a filename to bin/upload.cgi, as demonstrated usi...

  • EPSS 27.34%
  • Veröffentlicht 20.10.2011 00:55:00
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The Home Page component in Cisco CiscoWorks Common Services before 4.1 on Windows, as used in CiscoWorks LAN Management Solution, Cisco Security Manager, Cisco Unified Service Monitor, Cisco Unified Operations Manager, CiscoWorks QoS Policy Manager, ...

  • EPSS 3.83%
  • Veröffentlicht 06.09.2011 19:55:03
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The SSL protocol, as used in certain configurations in Microsoft Windows and Microsoft Internet Explorer, Mozilla Firefox, Google Chrome, Opera, and other products, encrypts data by using CBC mode with chained initialization vectors, which allows man...

  • EPSS 1.28%
  • Veröffentlicht 25.01.2011 01:00:03
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Microsoft Windows does not properly warn the user before enabling additional Human Interface Device (HID) functionality over USB, which allows user-assisted attackers to execute arbitrary programs via crafted USB data, as demonstrated by keyboard and...

  • EPSS 0.62%
  • Veröffentlicht 08.10.2010 22:00:37
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Unspecified vulnerability in Microsoft Windows on 32-bit platforms allows local users to gain privileges via unknown vectors, as exploited in the wild in July 2010 by the Stuxnet worm, and identified by Microsoft researchers and other researchers.