CWE-822— Untrusted Pointer Dereference
The product obtains a value from an untrusted source, converts this value to a pointer, and dereferences the resulting pointer.— MITRE CWE catalog
261 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-822page 1 of 6
- CVE-2023-29360CRITICALCVSS 8.4EG 9.0⚠ KEV2023-06-14
Microsoft Streaming Service Elevation of Privilege Vulnerability
- CVE-2025-24990CRITICALCVSS 7.8EG 9.0⚠ KEV2025-10-14
Microsoft is aware of vulnerabilities in the third party Agere Modem driver that ships natively with supported Windows operating systems. This is an announcement of the upcoming removal of ltmdm64.sys driver. The driver has been removed …
- CVE-2024-35250CRITICALCVSS 7.8EG 9.0⚠ KEV2024-06-11
Windows Kernel-Mode Driver Elevation of Privilege Vulnerability
- CVE-2024-21338CRITICALCVSS 7.8EG 9.0⚠ KEV2024-02-13
Windows Kernel Elevation of Privilege Vulnerability
- CVE-2023-36033CRITICALCVSS 7.8EG 9.0⚠ KEV2023-11-14
Windows DWM Core Library Elevation of Privilege Vulnerability
- CVE-2026-103764CRITICALCVSS 9.8EG 9.82026-10-01
Mooncake transfer engine before 0.3.13 contains an untrusted pointer dereference in ServerSession::readHeader that allows unauthenticated attackers to read and write arbitrary process memory via the TCP transport data port. Attackers can s…
- CVE-2026-48137CRITICALCVSS 9.8EG 9.82026-06-19
There is an untrusted pointer dereference vulnerability in the NI grpc-device sideband streaming API that may allow an attacker to cause an arbitrary memory dereference, potentially resulting in remote code execution. Successful exploita…
- CVE-2025-50165CRITICALCVSS 9.8EG 9.82025-08-12
Untrusted pointer dereference in Microsoft Graphics Component allows an unauthorized attacker to execute code over a network.
- CVE-2023-1437CRITICALCVSS 9.8EG 9.82023-08-02
All versions prior to 9.1.4 of Advantech WebAccess/SCADA are vulnerable to use of untrusted pointers. The RPC arguments the client sent could contain raw memory pointers for the server to use as-is. This could allow an attacker to gain acc…
- CVE-2018-12548CRITICALCVSS 9.8EG 9.82019-01-31
In OpenJDK + Eclipse OpenJ9 version 0.11.0 builds, the public jdk.crypto.jniprovider.NativeCrypto class contains public static natives which accept pointer values that are dereferenced in the native code.
- CVE-2018-17893CRITICALCVSS 9.8EG 9.82018-10-17
LAquis SCADA Versions 4.1.0.3870 and prior has an untrusted pointer dereference vulnerability, which may allow remote code execution.
- CVE-2018-14811CRITICALCVSS 9.8EG 9.82018-09-26
Fuji Electric V-Server 4.0.3.0 and prior, Multiple untrusted pointer dereference vulnerabilities have been identified, which may allow remote code execution.
- CVE-2018-7497CRITICALCVSS 9.8EG 9.82018-05-15
In Advantech WebAccess versions V8.2_20170817 and prior, WebAccess versions V8.3.0 and prior, WebAccess Dashboard versions V.2.0.15 and prior, WebAccess Scada Node versions prior to 8.3.1, and WebAccess/NMS 2.0.3 and prior, several untrust…
- CVE-2026-102710CRITICALCVSS 9.3EG 9.32026-09-29
Attacker model / Preconditions: a loaded `TXM_MODULE_USER_MODE | TXM_MODULE_MEMORY_PROTECTION` module issuing kernel dispatch calls, on a build with `TX_ENABLE_EVENT_TRACE`. A user-mode, memory-protected module can register an arbitrary…
- CVE-2025-4993CRITICALCVSS 9.1EG 9.12025-09-23
Untrusted Pointer Dereference vulnerability in RTI Connext Professional (Core Libraries) allows Pointer Manipulation. This issue affects Connext Professional: from 7.4.0 before 7.6.0, from 7.0.0 before 7.3.0.10, from 6.1.0 before 6.1.2.27,…
- CVE-2025-1255CRITICALCVSS 9.1EG 9.12025-09-23
Untrusted Pointer Dereference vulnerability in RTI Connext Professional (Core Libraries) allows Pointer Manipulation. This issue affects Connext Professional: from 7.4.0 before 7.6.0, from 7.2.0 before 7.3.0.9.
- CVE-2024-36461CRITICALCVSS 9.1EG 9.12024-08-12
Within Zabbix, users have the ability to directly modify memory pointers in the JavaScript engine.
- CVE-2023-21643CRITICALCVSS 9.1EG 9.12023-08-08
Memory corruption due to untrusted pointer dereference in automotive during system call.
- CVE-2026-67378CRITICALCVSS 9.0EG 9.02026-09-08
Untrusted pointer dereference in SQL Server allows an unauthorized attacker to execute code over a network.
- CVE-2026-94403HIGHCVSS 8.8EG 8.82026-09-21
A weakness has been identified in ColorFul iGameCenter 1.0.3.4. This impacts the function sub_140001AF0 in the library ene.sys of the component IOCTL Handler. This manipulation causes untrusted pointer dereference. The attack can only be e…
- CVE-2026-80083HIGHCVSS 8.8EG 8.82026-09-08
Untrusted pointer dereference in Windows Hyper-V allows an authorized attacker to execute code locally.
- CVE-2026-69717HIGHCVSS 8.8EG 8.82026-09-08
Untrusted pointer dereference in Windows Group Policy allows an authorized attacker to elevate privileges over a network.
- CVE-2026-19442HIGHCVSS 8.8EG 8.82026-08-20
IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 has a pointer validation flaw exists in the AIX Virtual SCSI (vSCSI) initiator driver. Successful exploitation may result in denial of service, privilege escalation, or full compromise of the c…
- CVE-2026-9771HIGHCVSS 8.8EG 8.82026-08-17
The flash_copy() system call is verified by z_vrfy_flash_copy() in drivers/flash/flash_util.c. On builds with CONFIG_USERSPACE enabled, this handler is the kernel-side trust boundary for a user-mode caller. Prior to the fix it validated on…
- CVE-2026-50382HIGHCVSS 8.8EG 8.82026-07-14
Untrusted pointer dereference in Windows DirectX allows an authorized attacker to execute code locally.
- CVE-2026-33120HIGHCVSS 8.8EG 8.82026-04-14
Untrusted pointer dereference in SQL Server allows an authorized attacker to execute code over a network.
- CVE-2025-62549HIGHCVSS 8.8EG 8.82025-12-09
Untrusted pointer dereference in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network.
- CVE-2025-27060HIGHCVSS 8.8EG 8.82025-10-09
Memory corruption while performing SCM call with malformed inputs.
- CVE-2024-43624HIGHCVSS 8.8EG 8.82024-11-12
Windows Hyper-V Shared Virtual Disk Elevation of Privilege Vulnerability
- CVE-2024-37340HIGHCVSS 8.8EG 8.82024-09-10
Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability
- CVE-2024-37339HIGHCVSS 8.8EG 8.82024-09-10
Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability
- CVE-2024-38104HIGHCVSS 8.8EG 8.82024-07-09
Windows Fax Service Remote Code Execution Vulnerability
- CVE-2023-0184HIGHCVSS 8.8EG 8.82023-04-22
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer handler which may lead to denial of service, escalation of privileges, information disclosure, and data tampering.
- CVE-2023-0189HIGHCVSS 8.8EG 8.82023-04-01
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer handler which may lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
- CVE-2022-34890HIGHCVSS 8.8EG 8.82022-07-18
This vulnerability allows local attackers to disclose sensitive information on affected installations of Parallels Desktop 17.1.1 (51537). An attacker must first obtain the ability to execute low-privileged code on the target guest system …
- CVE-2020-27259HIGHCVSS 8.8EG 8.82021-02-09
The Omron CX-One Version 4.60 and prior may allow an attacker to supply a pointer to arbitrary memory locations, which may allow an attacker to remotely execute arbitrary code.
- CVE-2020-26991HIGHCVSS 8.8EG 8.82021-01-12
A vulnerability has been identified in JT2Go (All versions < V13.1.0.2), Teamcenter Visualization (All versions < V13.1.0.2). Affected applications lack proper validation of user-supplied data when parsing ASM files. This could lead to poi…
- CVE-2020-17392HIGHCVSS 8.8EG 8.82020-08-25
This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.3-47255. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit…
- CVE-2023-21768HIGHCVSS 7.8EG 8.62023-01-10
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
- CVE-2026-102757HIGHCVSS 8.5EG 8.52026-09-29
An unprivileged, memory-protected ThreadX module can have the kernel read and write memory at addresses of its choosing, in privileged mode, and can use that to clear the MPU enable bit and remove its own isolation boundary. The Module …
- CVE-2026-20738HIGHCVSS 8.5EG 8.52026-05-12
Untrusted pointer dereference for some Intel(R) QuickAssist Adapter 8960 software before version 1.13 within Ring 3: User Applications may allow an escalation of privilege. Unprivileged software adversary with an authenticated user combine…
- CVE-2026-102709HIGHCVSS 8.4EG 8.42026-09-29
Improper validation of non-secure (NS) pointers in multiple TrustZone-M non-secure callable (NSC) entry functions allows an attacker executing in the non-secure world to supply pointers to secure memory. The secure firmware subsequently de…
- CVE-2026-12364HIGHCVSS 8.4EG 8.42026-08-14
The user-space system-call verifier z_vrfy_z_log_msg_static_create() in subsys/logging/log_msg.c was a pure pass-through: it forwarded the caller-supplied source, desc, package, and data arguments directly to the kernel-mode implementation…
- CVE-2026-8917HIGHCVSS 8.4EG 8.42026-08-11
Untrusted Pointer Dereference in ASUS GPU Tweak III, GPUTweakII, AI Suite3, and VGAdll: An IOCTL vulnerability allows a local attacker to write a specific value to an arbitrary memory address, potentially leading to privilege escalation. R…
- CVE-2026-15029HIGHCVSS 8.4EG 8.42026-07-15
Untrusted Pointer Dereference in ASUS System Control Interface v3, ASUS System Control Interface, and ASUS Business Manager allows a local administrator to perform arbitrary physical memory read and write operations via crafted IOCTL reque…
- CVE-2026-40367HIGHCVSS 8.4EG 8.42026-05-12
Access of resource using incompatible type ('type confusion') in Microsoft Office Word allows an unauthorized attacker to execute code locally.
- CVE-2026-33114HIGHCVSS 8.4EG 8.42026-04-14
Untrusted pointer dereference in Microsoft Office Word allows an unauthorized attacker to execute code locally.
- CVE-2026-26113HIGHCVSS 8.4EG 8.42026-03-10
Untrusted pointer dereference in Microsoft Office allows an unauthorized attacker to execute code locally.
- CVE-2024-36352HIGHCVSS 8.4EG 8.42025-09-06
Improper input validation in the AMD Graphics Driver could allow an attacker to supply a specially crafted pointer, potentially leading to arbitrary writes or denial of service.
- CVE-2025-20018HIGHCVSS 8.4EG 8.42025-05-13
Untrusted pointer dereference for some Intel(R) Graphics Drivers may allow an authenticated user to potentially enable escalation of privilege via local access.
Map vulnerabilities like CWE-822 to your infrastructure
EchelonGraph correlates every CVE — across CWE-822 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Book a Demo →