CWE-822
242 CVEs • Abstraction: Base
Untrusted Pointer Dereference
The product obtains a value from an untrusted source, converts this value to a pointer, and dereferences the resulting pointer.
CVEs (242)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Microsoft 14Windows 10 1507 Windows 10 1607Windows 10 1809+11 moreJun 17, 2026 Nov 12, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Win32k Elevation of Privilege Vulnerability |
1Microsoft 8Windows 10 21h2 Windows 10 22h2Windows 11 22h2+5 moreJun 17, 2026 Nov 12, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Windows Secure Kernel Mode Elevation of Privilege Vulnerability |
1Microsoft 10Windows 10 1809 Windows 10 21h2Windows 10 22h2+7 moreJun 17, 2026 Nov 12, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Windows DWM Core Library Elevation of Privilege Vulnerability |
1Microsoft 10Windows 10 1809 Windows 10 21h2Windows 10 22h2+7 moreJun 17, 2026 Nov 12, 2024 N/A· v4 8.8 HIGH· v3 N/A· v2 Windows Hyper-V Shared Virtual Disk Elevation of Privilege Vulnerability |
1Microsoft 15Windows 10 1507 Windows 10 1607Windows 10 1809+12 moreJun 17, 2026 Oct 8, 2024 N/A· v4 7.0 HIGH· v3 N/A· v2 NT OS Kernel Elevation of Privilege Vulnerability |
1Microsoft 8Windows 10 21h2 Windows 10 22h2Windows 11 21h2+5 moreJun 17, 2026 Oct 8, 2024 N/A· v4 7.3 HIGH· v3 N/A· v2 Windows Print Spooler Elevation of Privilege Vulnerability |
1Microsoft 13Windows 10 1507 Windows 10 1607Windows 10 1809+10 moreJun 17, 2026 Oct 8, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Windows Secure Kernel Mode Elevation of Privilege Vulnerability |
1Microsoft 14Windows 10 1507 Windows 10 1607Windows 10 1809+11 moreJun 17, 2026 Oct 8, 2024 N/A· v4 6.7 MEDIUM· v3 N/A· v2 Windows Resume Extensible Firmware Interface Security Feature Bypass Vulnerability |
1Microsoft 14Windows 10 1507 Windows 10 1607Windows 10 1809+11 moreJun 17, 2026 Oct 8, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Windows Resume Extensible Firmware Interface Security Feature Bypass Vulnerability |
1Microsoft 4Windows Server 2012 Windows Server 2016Windows Server 2019+1 moreJun 17, 2026 Oct 8, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Windows Kernel Elevation of Privilege Vulnerability |
1Qualcomm 20Qam8295p Firmware Qca6584au FirmwareQca6595 Firmware+17 moreJun 17, 2026 Oct 7, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption when a compat IOCTL call is followed by another IOCTL call from userspace to a driver. |
Untrusted pointer dereference in UEFI firmware for some Intel(R) reference processors may allow a privileged user to potentially enable escalation of privilege via local access. |
1Microsoft 5Sql 2016 Azure Connect Feature Pack Sql Server 2016Sql Server 2017+2 moreAug 10, 2026 Sep 10, 2024 N/A· v4 8.8 HIGH· v3 N/A· v2 Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability |
1Microsoft 5Sql 2016 Azure Connect Feature Pack Sql Server 2016Sql Server 2017+2 moreAug 10, 2026 Sep 10, 2024 N/A· v4 8.8 HIGH· v3 N/A· v2 Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability |
1Qualcomm 43Fastconnect 6700 Firmware Fastconnect 6900 FirmwareFastconnect 7800 Firmware+40 moreJun 17, 2026 Sep 2, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while passing untrusted/corrupted pointers from DSP to EVA. |
1Microsoft 11Windows 10 1607 Windows 10 1809Windows 10 21h2+8 moreJun 17, 2026 Aug 13, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Windows Kernel-Mode Driver Elevation of Privilege Vulnerability |
1Microsoft 11Windows 10 1607 Windows 10 1809Windows 10 21h2+8 moreJun 17, 2026 Aug 13, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Windows Kernel-Mode Driver Elevation of Privilege Vulnerability |
Within Zabbix, users have the ability to directly modify memory pointers in the JavaScript engine. |
There is an elevation of privilege vulnerability in server and client components of Absolute Secure Access prior to version 13.07. Attackers with local access and valid desktop user credentials can elevate their privileg...Show more |
1Microsoft 14Windows 10 1507 Windows 10 1607Windows 10 1809+11 moreJun 17, 2026 Jul 9, 2024 N/A· v4 8.8 HIGH· v3 N/A· v2 Windows Fax Service Remote Code Execution Vulnerability |