964 vulnerabilidades · 🔥 KEV Orden: CVSS EPSS Año ID
CVE-2025-0411
🔥 KEV 7-Zip General
7.0
HIGH
EPSS
52.4%
2025 CWE-693 10 PoCs

7-Zip Mark-of-the-Web Bypass Vulnerability. This vulnerability allows remote attackers to bypass the Mark-of-the-Web protection mechanism on affected installations of 7-Zip. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of archived files. When extracting files from a crafted archive that bears the Mark-of-the-Web, 7-Zip does not propagate the Mark-of-the-Web to the extracted files. An attacker can leverage this vulnerability to execute arbitrary code in the contex

CVE-2016-5195
🔥 KEV Software Genérico General
7.0
HIGH
EPSS
94.2%
2016 50 PoCs

Race condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by leveraging incorrect handling of a copy-on-write (COW) feature to write to a read-only memory mapping, as exploited in the wild in October 2016, aka "Dirty COW."

CVE-2018-8120
🔥 KEV Windows Server 2008 Windows
7.0
HIGH
EPSS
94.1%
2018 14 PoCs

An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka "Win32k Elevation of Privilege Vulnerability." This affects Windows Server 2008, Windows 7, Windows Server 2008 R2. This CVE ID is unique from CVE-2018-8124, CVE-2018-8164, CVE-2018-8166.