Rosetta Intel
Datasets/KEV CatalogThreat Actors
Rosetta Lab ↗Blur Horizon LLC
Datasets

KEV Catalog

CISA, queryable

Known exploited vulnerabilities as a queryable table — by CVE, vendor or product.

1676 entries·352 Ransomware·Updated 2026-08-25

CWE-822Definition on MITRE ↗Clear

5 results

CVE-2025-24990
2025-10-14
Microsoft Windows Untrusted Pointer Dereference Vulnerability
Microsoft

Microsoft Windows Agere Modem Driver contains an untrusted pointer dereference vulnerability that allows for privilege escalation. An attacker who successfully exploited this vulnerability could gain administrator privileges.

CWE-822
Refsmsrc.microsoft.comnvd.nist.gov
Federal remediation due 2025-11-04
CVE-2024-35250
2024-12-16
Microsoft Windows Kernel-Mode Driver Untrusted Pointer Dereference Vulnerability
Microsoft

Microsoft Windows Kernel-Mode Driver contains an untrusted pointer dereference vulnerability that allows a local attacker to escalate privileges.

CWE-822
Refsmsrc.microsoft.comnvd.nist.gov
Federal remediation due 2025-01-06
CVE-2024-21338
2024-03-04
Microsoft Windows Kernel Exposed IOCTL with Insufficient Access Control VulnerabilityRansomware
Microsoft

Microsoft Windows Kernel contains an exposed IOCTL with insufficient access control vulnerability within the IOCTL (input and output control) dispatcher in appid.sys that allows a local attacker to achieve privilege escalation.

CWE-822
Refsmsrc.microsoft.comnvd.nist.gov
Federal remediation due 2024-03-25
CVE-2023-29360
2024-02-29
Microsoft Streaming Service Untrusted Pointer Dereference Vulnerability
Microsoft

Microsoft Streaming Service contains an untrusted pointer dereference vulnerability that allows for privilege escalation, enabling a local attacker to gain SYSTEM privileges.

CWE-822
Refsmsrc.microsoft.comnvd.nist.gov
Federal remediation due 2024-03-21
CVE-2023-36033
2023-11-14
Microsoft Windows Desktop Window Manager (DWM) Core Library Privilege Escalation Vulnerability
Microsoft

Microsoft Windows Desktop Window Manager (DWM) Core Library contains an unspecified vulnerability that allows for privilege escalation.

CWE-822
Refsmsrc.microsoft.comnvd.nist.gov
Federal remediation due 2023-12-05