Vulnerabilities
381,276
with PoCs
37,250
CISA KEV
1,665
Ransomware
606
with Nuclei
4,342

Showing 4 vulnerabilities on this page

Signals CISA KEV Ransomware Nuclei
Vulnerability search results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

CVE-2025-0286

Various Paragon Software products contain an arbitrary kernel memory write vulnerability within biontdrv.sys that is caused by a failure to properly validate the length of user supplied data, which can allow an attacker to execute arbitrary code on the victim machine.

CWE-1284CWE-787Mar 3, 2025
CVSS8.4v3.1EPSS0.367%PoCs0SignalsNot listed in CISA KEVKnown ransomware useNo Nuclei templatesSTIX

CVE-2025-0287

Various Paragon Software products contain a null pointer dereference vulnerability within biontdrv.sys that is caused by a lack of a valid MasterLrp structure in the input buffer, allowing an attacker to execute arbitrary code in the kernel, facilitating privilege escalation.

CWE-476Mar 3, 2025
CVSS5.1v3.1EPSS0.352%PoCs0SignalsNot listed in CISA KEVKnown ransomware useNo Nuclei templatesSTIX

CVE-2025-0288

Various Paragon Software products contain an arbitrary kernel memory vulnerability within biontdrv.sys, facilitated by the memmove function, which does not validate or sanitize user controlled input, allowing an attacker the ability to write arbitrary kernel memory and perform privilege escalation.

CWE-131Mar 3, 2025
CVSS7.8v3.1EPSS0.487%PoCs2SignalsNot listed in CISA KEVKnown ransomware useNo Nuclei templatesSTIX

CVE-2025-0289

Various Paragon Software products contain an insecure kernel resource access vulnerability facilitated by the driver not validating the MappedSystemVa pointer before passing it to HalReturnToFirmware, which can allows an attacker the ability to compromise the service.

CWE-1287CWE-20Mar 3, 2025
CVSS7.8v3.1EPSS0.329%PoCs0SignalsNot listed in CISA KEVKnown ransomware useNo Nuclei templatesSTIX