CWE-822
Untrusted Pointer Dereference
Description
The product obtains a value from an untrusted source, converts this value to a pointer, and dereferences the resulting pointer.
Hierarchy (View 1000)
Parents
Children
none
Related attack patterns (CAPEC)
CAPEC-129
CVEs mapped to this weakness (222)
page 5 of 12| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2025-60703 | Hig | 0.51 | 7.8 | 0.00 | Nov 11, 2025 | Untrusted pointer dereference in Windows Remote Desktop allows an authorized attacker to elevate privileges locally. | ||
| CVE-2025-59207 | Hig | 0.51 | 7.8 | 0.00 | Oct 14, 2025 | Untrusted pointer dereference in Windows Kernel allows an authorized attacker to elevate privileges locally. | ||
| CVE-2025-59187 | Hig | 0.51 | 7.8 | 0.00 | Oct 14, 2025 | Improper input validation in Windows Kernel allows an authorized attacker to elevate privileges locally. | ||
| CVE-2025-55696 | Hig | 0.51 | 7.8 | 0.00 | Oct 14, 2025 | Time-of-check time-of-use (toctou) race condition in NtQueryInformation Token function (ntifs.h) allows an authorized attacker to elevate privileges locally. | ||
| CVE-2025-55677 | Hig | 0.51 | 7.8 | 0.00 | Oct 14, 2025 | Untrusted pointer dereference in Windows Device Association Broker service allows an authorized attacker to elevate privileges locally. | ||
| CVE-2025-47338 | Hig | 0.51 | 7.8 | 0.00 | Oct 9, 2025 | Memory corruption while processing escape commands from userspace. | ||
| CVE-2025-27048 | Hig | 0.51 | 7.8 | 0.00 | Oct 9, 2025 | Memory corruption while processing camera platform driver IOCTL calls. | ||
| CVE-2025-53801 | Hig | 0.51 | 7.8 | 0.00 | Sep 9, 2025 | Untrusted pointer dereference in Windows DWM allows an authorized attacker to elevate privileges locally. | ||
| CVE-2025-55230 | Hig | 0.51 | 7.8 | 0.00 | Aug 21, 2025 | Untrusted pointer dereference in Windows MBT Transport driver allows an authorized attacker to elevate privileges locally. | ||
| CVE-2025-27069 | Hig | 0.51 | 7.8 | 0.00 | Aug 6, 2025 | Memory corruption while processing DDI command calls. | ||
| CVE-2025-49689 | Hig | 0.51 | 7.8 | 0.01 | Jul 8, 2025 | Integer overflow or wraparound in Virtual Hard Disk (VHDX) allows an unauthorized attacker to elevate privileges locally. | ||
| CVE-2025-49661 | Hig | 0.51 | 7.8 | 0.00 | Jul 8, 2025 | Untrusted pointer dereference in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally. | ||
| CVE-2025-47985 | Hig | 0.51 | 7.8 | 0.00 | Jul 8, 2025 | Untrusted pointer dereference in Windows Event Tracing allows an authorized attacker to elevate privileges locally. | ||
| CVE-2025-47982 | Hig | 0.51 | 7.8 | 0.00 | Jul 8, 2025 | Improper input validation in Windows Storage VSP Driver allows an authorized attacker to elevate privileges locally. | ||
| CVE-2025-21486 | Hig | 0.51 | 7.8 | 0.00 | Jun 3, 2025 | Memory corruption during dynamic process creation call when client is only passing address and length of shell binary. | ||
| CVE-2025-30381 | Hig | 0.51 | 7.8 | 0.01 | May 13, 2025 | Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | ||
| CVE-2025-29812 | Hig | 0.51 | 7.8 | 0.01 | Apr 8, 2025 | Untrusted pointer dereference in Windows Kernel Memory allows an authorized attacker to elevate privileges locally. | ||
| CVE-2025-27747 | Hig | 0.51 | 7.8 | 0.01 | Apr 8, 2025 | Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally. | ||
| CVE-2025-27739 | Hig | 0.51 | 7.8 | 0.01 | Apr 8, 2025 | Untrusted pointer dereference in Windows Kernel allows an authorized attacker to elevate privileges locally. | ||
| CVE-2025-24083 | Hig | 0.51 | 7.8 | 0.01 | Mar 11, 2025 | Untrusted pointer dereference in Microsoft Office allows an unauthorized attacker to execute code locally. |
- risk 0.51cvss 7.8epss 0.00
Untrusted pointer dereference in Windows Remote Desktop allows an authorized attacker to elevate privileges locally.
- risk 0.51cvss 7.8epss 0.00
Untrusted pointer dereference in Windows Kernel allows an authorized attacker to elevate privileges locally.
- risk 0.51cvss 7.8epss 0.00
Improper input validation in Windows Kernel allows an authorized attacker to elevate privileges locally.
- risk 0.51cvss 7.8epss 0.00
Time-of-check time-of-use (toctou) race condition in NtQueryInformation Token function (ntifs.h) allows an authorized attacker to elevate privileges locally.
- risk 0.51cvss 7.8epss 0.00
Untrusted pointer dereference in Windows Device Association Broker service allows an authorized attacker to elevate privileges locally.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing escape commands from userspace.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing camera platform driver IOCTL calls.
- risk 0.51cvss 7.8epss 0.00
Untrusted pointer dereference in Windows DWM allows an authorized attacker to elevate privileges locally.
- risk 0.51cvss 7.8epss 0.00
Untrusted pointer dereference in Windows MBT Transport driver allows an authorized attacker to elevate privileges locally.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing DDI command calls.
- risk 0.51cvss 7.8epss 0.01
Integer overflow or wraparound in Virtual Hard Disk (VHDX) allows an unauthorized attacker to elevate privileges locally.
- risk 0.51cvss 7.8epss 0.00
Untrusted pointer dereference in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.
- risk 0.51cvss 7.8epss 0.00
Untrusted pointer dereference in Windows Event Tracing allows an authorized attacker to elevate privileges locally.
- risk 0.51cvss 7.8epss 0.00
Improper input validation in Windows Storage VSP Driver allows an authorized attacker to elevate privileges locally.
- risk 0.51cvss 7.8epss 0.00
Memory corruption during dynamic process creation call when client is only passing address and length of shell binary.
- risk 0.51cvss 7.8epss 0.01
Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
- risk 0.51cvss 7.8epss 0.01
Untrusted pointer dereference in Windows Kernel Memory allows an authorized attacker to elevate privileges locally.
- risk 0.51cvss 7.8epss 0.01
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
- risk 0.51cvss 7.8epss 0.01
Untrusted pointer dereference in Windows Kernel allows an authorized attacker to elevate privileges locally.
- risk 0.51cvss 7.8epss 0.01
Untrusted pointer dereference in Microsoft Office allows an unauthorized attacker to execute code locally.