CWE-822

Untrusted Pointer Dereference

Parent: CWE-119 - Improper Restriction of Operations within the Bounds of a Memory Buffer

The product obtains a value from an untrusted source, converts this value to a pointer, and dereferences the resulting pointer.

212 vulnerabilities with CWE-822
CVE-2025-62561 HIGH
Microsoft Excel - Untrusted Pointer Dereference
CVSS 7.8
CVE-2025-62560 HIGH
Microsoft Excel - Untrusted Pointer Dereference
CVSS 7.8
CVE-2025-62556 HIGH
Microsoft Excel - Untrusted Pointer Dereference
CVSS 7.8
CVE-2025-62549 HIGH
Windows Routing and Remote Access Service - Remote Code Execution
CVSS 8.8
CVE-2025-62200 HIGH
Microsoft Office Excel - Code Injection
CVSS 7.8
CVE-2025-60728 MEDIUM
Microsoft Office Excel - Info Disclosure
CVSS 4.3
CVE-2025-60719 HIGH
Windows Ancillary Function Driver - Privilege Escalation
CVSS 7.0
CVE-2025-60713 HIGH
Windows RRAS - Privilege Escalation
CVSS 7.8
CVE-2025-60708 MEDIUM
Windows 10/11, Server 2016-2025 DoS via Storvsp.sys Untrusted Pointer Dereference
CVSS 6.5
CVE-2025-60703 HIGH
Windows Remote Desktop - Privilege Escalation
CVSS 7.8
CVE-2025-32446 MEDIUM
Intel QuickAssist Technology <2.6.0 - Privilege Escalation
CVSS 6.5
CVE-2025-27710 MEDIUM
Intel QuickAssist Technology < 2.6.0-0018 - Untrusted Pointer Dereference
CVSS 6.5
CVE-2025-54331 MEDIUM
Samsung Mobile Processor Exynos 1380 - Untrusted Pointer Dereference
CVSS 5.3
CVE-2025-59207 HIGH
Windows Kernel < - Privilege Escalation
CVSS 7.8
CVE-2025-59187 HIGH
Windows Kernel - Privilege Escalation
CVSS 7.8
CVE-2025-55696 HIGH
NtQueryInformation Token - Privilege Escalation
CVSS 7.8
CVE-2025-55681 HIGH
Windows 10 1809-22H2, Windows 11 22H2-25H2, Windows Server 2019-2025 - Privilege Escalation via DWM OOB Read
CVSS 7.0
CVE-2025-55677 HIGH
Windows Device Association Broker - Privilege Escalation
CVSS 7.8
CVE-2025-24990 HIGH KEV
Windows Agere Modem Driver - Untrusted Pointer Dereference
CVSS 7.8
CVE-2025-47338 HIGH
Qualcomm FastConnect and Multiple Firmware - Memory Corruption
CVSS 7.8
CVE-2025-27060 HIGH
Product <Version - Memory Corruption
CVSS 8.8
CVE-2025-27048 HIGH
Camera Platform Driver < - Memory Corruption
CVSS 7.8
CVE-2025-4993 CRITICAL
RTI Connext Professional - Pointer Manipulation
CVSS 9.1
CVE-2025-1255 CRITICAL
RTI Connext Professional <7.6.0-<7.3.0.9 - Memory Corruption
CVSS 9.1
CVE-2025-58749 MEDIUM
WebAssembly Micro Runtime < 2.4.2 - Denial of Service via Memory Fill Instruction
CVSS 5.3
Details
Vulnerabilities 212