CWE-822

Untrusted Pointer Dereference

Parent: CWE-119 - Improper Restriction of Operations within the Bounds of a Memory Buffer

The product obtains a value from an untrusted source, converts this value to a pointer, and dereferences the resulting pointer.

212 vulnerabilities with CWE-822
CVE-2020-14392 MEDIUM
Perl-DBI < 1.643 - Memory Corruption
CVSS 5.5
CVE-2020-17392 HIGH
Parallels Desktop <15.1.3-47255 - Privilege Escalation
CVSS 8.8
CVE-2019-13334 HIGH
Foxit PhantomPDF 9.5.0.20723 - Remote Code Execution via DXF File Conversion
CVSS 7.8
CVE-2018-19029 HIGH
LCDS Laquis SCADA < 4.1.0.4150 - Remote Code Execution via Crafted Project File
CVSS 7.8
CVE-2018-12548 CRITICAL
OpenJDK + Eclipse OpenJ9 <0.11.0 - Use After Free
CVSS 9.8
CVE-2018-17893 CRITICAL
LAquis SCADA < 4.1.0.3870 - Remote Code Execution via Untrusted Pointer Dereference
CVSS 9.8
CVE-2018-14811 CRITICAL
Fuji Electric V-Server <4.0.3.0 - RCE
CVSS 9.8
CVE-2018-7497 CRITICAL
Advantech WebAccess < 8.2_20170817, Dashboard < 2.0.15, SCADA < 8.3.1, NMS < 2.0.3 - Untrusted Pointer Dereference
CVSS 9.8
CVE-2018-7502 HIGH
Beckhoff TwinCAT - Privilege Escalation
CVSS 7.8
CVE-2018-7525 MEDIUM
Omron CX-Supervisor <3.30 - Memory Corruption
CVSS 5.3
CVE-2017-16728 HIGH
Advantech WebAccess <8.3 - Memory Corruption
CVSS 7.5
CVE-2017-12719 HIGH
Advantech WebAccess <V8.2_20170817 - Code Injection
CVSS 7.5
Details
Vulnerabilities 212