Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2025-03-11 CVE-2025-27176 NULL Pointer Dereference vulnerability in Adobe Indesign
InDesign Desktop versions ID20.1, ID19.5.2 and earlier are affected by a NULL Pointer Dereference vulnerability that could result in an application denial-of-service.
local
low complexity
adobe CWE-476
5.5
2025-03-11 CVE-2025-27177 Heap-based Buffer Overflow vulnerability in Adobe Indesign
InDesign Desktop versions ID20.1, ID19.5.2 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-122
7.8
2025-03-11 CVE-2025-27178 Out-of-bounds Write vulnerability in Adobe Indesign
InDesign Desktop versions ID20.1, ID19.5.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-787
7.8
2025-03-11 CVE-2025-27179 NULL Pointer Dereference vulnerability in Adobe Indesign
InDesign Desktop versions ID20.1, ID19.5.2 and earlier are affected by a NULL Pointer Dereference vulnerability that could result in an application denial-of-service.
local
low complexity
adobe CWE-476
5.5
2025-03-11 CVE-2024-56338 IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.1.2.6 and 6.2.0.0 through 6.2.0.3 is vulnerable to cross-site scripting.
network
low complexity
CWE-79
4.8
2025-03-11 CVE-2025-21169 Heap-based Buffer Overflow vulnerability in Adobe Substance 3D Designer
Substance3D - Designer versions 14.1 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-122
7.8
2025-03-11 CVE-2025-21180 Heap-based buffer overflow in Windows exFAT File System allows an unauthorized attacker to execute code locally.
local
low complexity
CWE-122
7.8
2025-03-11 CVE-2025-21199 Improper privilege management in Azure Agent Installer allows an authorized attacker to elevate privileges locally.
local
high complexity
CWE-269
6.7
2025-03-11 CVE-2025-21247 Improper resolution of path equivalence in Windows MapUrlToZone allows an unauthorized attacker to bypass a security feature over a network.
network
low complexity
CWE-41
4.3
2025-03-11 CVE-2025-24035 Sensitive data storage in improperly locked memory in Windows Remote Desktop Services allows an unauthorized attacker to execute code over a network.
network
high complexity
CWE-591
8.1