Rosetta Intel
Datasets/KEV CatalogThreat Actors
Rosetta Lab ↗Blur Horizon LLC
Datasets

KEV Catalog

CISA, queryable

Known exploited vulnerabilities as a queryable table — by CVE, vendor or product.

1676 entries·352 Ransomware·Updated 2026-08-25

CWE-119 · Memory buffer boundsDefinition on MITRE ↗Clear

84 results·Page 2 / 2

CVE-2018-0175
2022-03-03
Cisco IOS, XR, and XE Software Buffer Overflow Vulnerability
Cisco

Format string vulnerability in the Link Layer Discovery Protocol (LLDP) subsystem of Cisco IOS Software, Cisco IOS XE Software, and Cisco IOS XR Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition or execute arbitrary code with elevated privileges on an affected device.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-03-17
CVE-2018-0167
2022-03-03
Cisco IOS, XR, and XE Software Buffer Overflow Vulnerability
Cisco

There is a buffer overflow vulnerability in the Link Layer Discovery Protocol (LLDP) subsystem of Cisco IOS Software, Cisco IOS XE Software, and Cisco IOS XR Software which could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition or execute arbitrary code.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-03-17
CVE-2018-0151
2022-03-03
Cisco IOS Software and Cisco IOS XE Software Quality of Service Remote Code Execution Vulnerability
Cisco / IOS and IOS XE Software

A vulnerability in the quality of service (QoS) subsystem of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition or execute arbitrary code with elevated privileges.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-03-17
CVE-2017-8540
2022-03-03
Microsoft Malware Protection Engine Improper Restriction of Operations Vulnerability
Microsoft

The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016, Microsoft Exchange Server 2013 and 2016, does not properly scan a specially crafted file leading to memory corruption. aka "Microsoft Malware Protection Engine Remote Code Execution Vulnerability".

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-03-24
CVE-2017-6744
2022-03-03
Cisco IOS Software SNMP Remote Code Execution Vulnerability
Cisco

The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS 1 contains a vulnerability that could allow an authenticated, remote attacker to remotely execute code on an affected system or cause an affected system to reload. An attacker could exploit these vulnerabilities by sending a crafted SNMP packet to an affected system via IPv4 or IPv6.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-03-24
CVE-2017-6743
2022-03-03
Cisco IOS and IOS XE Software SNMP Remote Code Execution Vulnerability
Cisco

The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS and IOS XE contains a vulnerability that could allow an authenticated, remote attacker to remotely execute code.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-03-24
CVE-2017-6740
2022-03-03
Cisco IOS and IOS XE Software SNMP Remote Code Execution Vulnerability
Cisco

The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS and IOS XE contains a vulnerability that could allow an authenticated, remote attacker to remotely execute code on an affected system or cause an affected system to reload.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-03-24
CVE-2017-6739
2022-03-03
Cisco IOS and IOS XE Software SNMP Remote Code Execution Vulnerability
Cisco

The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS and IOS XE contains a vulnerability that could allow an authenticated, remote attacker to remotely execute code on an affected system or cause an affected system to reload.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-03-24
CVE-2017-6738
2022-03-03
Cisco IOS and IOS XE Software SNMP Remote Code Execution Vulnerability
Cisco

The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS and IOS XE contains a vulnerability that could allow an authenticated, remote attacker to remotely execute code.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-03-24
CVE-2017-6737
2022-03-03
Cisco IOS and IOS XE Software SNMP Remote Code Execution Vulnerability
Cisco

The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS and IOS XE contains a vulnerability that could allow an authenticated, remote attacker to remotely execute code.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-03-24
CVE-2017-6736
2022-03-03
Cisco IOS and IOS XE Software SNMP Remote Code Execution Vulnerability
Cisco

The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS and IOS XE contains a vulnerability that could allow an authenticated, remote attacker to remotely execute code.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-03-24
CVE-2017-11826
2022-03-03
Microsoft Office Remote Code Execution Vulnerability
Microsoft

A remote code execution vulnerability exists in Microsoft Office software when the software fails to properly handle objects in memory. An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the current user.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-03-24
CVE-2016-7193
2022-03-03
Microsoft Office Memory Corruption Vulnerability
Microsoft

Microsoft Office contains a memory corruption vulnerability which can allow for remote code execution.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-03-24
CVE-2015-5119
2022-03-03
Adobe Flash Player Use-After-Free Vulnerability
Adobe

A use-after-free vulnerability exists within the ActionScript 3 ByteArray class in Adobe Flash Player that allows an attacker to perform remote code execution.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-03-24
CVE-2015-2424
2022-03-03
Microsoft PowerPoint Memory Corruption Vulnerability
Microsoft

Microsoft PowerPoint allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted Office document.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-03-24
CVE-2015-1642
2022-03-03
Microsoft Office Memory Corruption Vulnerability
Microsoft

Microsoft Office contains a memory corruption vulnerability that allows remote attackers to execute arbitrary code via a crafted document.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-03-24
CVE-2013-3346
2022-03-03
Adobe Reader and Acrobat Memory Corruption Vulnerability
Adobe

Adobe Reader and Acrobat contain a memory corruption vulnerability which can allow attackers to execute arbitrary code or cause a denial of service.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-03-24
CVE-2013-1675
2022-03-03
Mozilla Firefox Information Disclosure Vulnerability
Mozilla

Mozilla Firefox does not properly initialize data structures for the nsDOMSVGZoomEvent::mPreviousScale and nsDOMSVGZoomEvent::mNewScale functions, which allows remote attackers to obtain sensitive information from process memory via a crafted web site.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-03-24
CVE-2011-1889
2022-03-03
Microsoft Forefront TMG Remote Code Execution Vulnerability
Microsoft / Forefront Threat Management Gateway (TMG)

A remote code execution vulnerability exists in the Forefront Threat Management Gateway (TMG) Firewall Client Winsock provider that could allow code execution in the security context of the client application.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-03-24
CVE-2010-3333
2022-03-03
Microsoft Office Stack-based Buffer Overflow Vulnerability
Microsoft

A stack-based buffer overflow vulnerability exists in the parsing of RTF data in Microsoft Office and earlier allows an attacker to perform remote code execution.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-03-24
CVE-2008-2992
2022-03-03
Adobe Reader and Acrobat Input Validation VulnerabilityRansomware
Adobe / Acrobat and Reader

Adobe Acrobat and Reader contain an input validation issue in a JavaScript method that could potentially lead to remote code execution.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-03-24
CVE-2017-0222
2022-02-25
Microsoft Internet Explorer Remote Code Execution Vulnerability
Microsoft

A remote code execution vulnerability exists when Internet Explorer improperly accesses objects in memory.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-08-25
CVE-2014-1761
2022-02-15
Microsoft Word Memory Corruption Vulnerability
Microsoft

Microsoft Word contains a memory corruption vulnerability which when exploited could allow for remote code execution.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-08-15
CVE-2020-0796
2022-02-10
Microsoft SMBv3 Remote Code Execution VulnerabilityRansomware
Microsoft

A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol handles certain requests. An attacker who successfully exploited the vulnerability could gain the ability to execute code on the target server or client.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-08-10
CVE-2014-4404
2022-02-10
Apple OS X Heap-Based Buffer Overflow Vulnerability
Apple

Heap-based buffer overflow in IOHIDFamily in Apple OS X, which affects, iOS before 8 and Apple TV before 7, allows attackers to execute arbitrary code in a privileged context.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-08-10
CVE-2021-22991
2022-01-18
F5 BIG-IP Traffic Management Microkernel Buffer Overflow
F5

The Traffic Management Microkernel of BIG-IP ASM Risk Engine has a buffer overflow vulnerability, leading to a bypassing of URL-based access controls.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-02-01
CVE-2021-33771
2021-11-03
Microsoft Windows Kernel Privilege Escalation Vulnerability
Microsoft

Microsoft Windows kernel contains an unspecified vulnerability that allows for privilege escalation.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2021-11-17
CVE-2021-31979
2021-11-03
Microsoft Windows Kernel Privilege Escalation Vulnerability
Microsoft

Microsoft Windows kernel contains an unspecified vulnerability that allows for privilege escalation.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2021-11-17
CVE-2021-30666
2021-11-03
Apple iOS WebKit Buffer Overflow Vulnerability
Apple

Apple iOS WebKit contains a buffer-overflow vulnerability that leads to code execution when processing maliciously crafted web content. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2021-11-17
CVE-2020-29557
2021-11-03
D-Link DIR-825 R1 Devices Buffer Overflow Vulnerability
D-Link

D-Link DIR-825 R1 devices contain a buffer overflow vulnerability in the web interface that may allow for remote code execution.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-05-03
CVE-2018-6789
2021-11-03
Exim Buffer Overflow VulnerabilityRansomware
Exim

Exim contains a buffer overflow vulnerability in the base64d function part of the SMTP listener that may allow for remote code execution.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-05-03
CVE-2017-7269
2021-11-03
Microsoft Windows Server Buffer Overflow Vulnerability
Microsoft / Internet Information Services (IIS)

Microsoft Windows Server 2003 R2 contains a buffer overflow vulnerability in Internet Information Services (IIS) 6.0 which allows remote attackers to execute code via a long header beginning with "If: <http://" in a PROPFIND request.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-05-03
CVE-2017-11882
2021-11-03
Microsoft Office Memory Corruption VulnerabilityRansomware
Microsoft

Microsoft Office contains a memory corruption vulnerability that allows remote code execution in the context of the current user.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-05-03
CVE-2017-11774
2021-11-03
Microsoft Office Outlook Security Feature Bypass Vulnerability
Microsoft

Microsoft Office Outlook contains a security feature bypass vulnerability due to improperly handling objects in memory. Successful exploitation allows an attacker to execute commands.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-05-03
Prev2 / 2Next