$_SecureScope악용 확인 · 악용 확률 · 한국어 권고
CVE Ledger

CWE-416 관련 취약점

같은 약점 유형으로 분류된 취약점입니다. CWE 는 "무엇을 잘못했는가" 의 분류이고, 제품을 가리지 않고 같은 실수가 반복됩니다.

원장 17,280건이 중 악용 확인 1,734건분류: CWE-416

CWE-416 — 주요 취약점

악용이 확인된 것을 먼저 보여줍니다.

9.8MICWE-416● 랜섬웨어 캠페인에 사용됨CVE-2019-0708Microsoft · Remote Desktop ServicesA remote code execution vulnerability exists in Remote Desktop Services formerly known as Terminal S…100.0%심각9.89.8MICWE-416● 실제 악용이 확인됨CVE-2021-31166Microsoft · HTTP Protocol StackHTTP Protocol Stack Remote Code Execution Vulnerability99.9%심각9.89.8ADCWE-416● 실제 악용이 확인됨CVE-2015-5119Adobe · Flash PlayerUse-after-free vulnerability in the ByteArray class in the ActionScript 3 (AS3) implementation in Ad…99.3%심각9.88.1MICWE-416● 실제 악용이 확인됨CVE-2010-3962Microsoft · Internet ExplorerUse-after-free vulnerability in Microsoft Internet Explorer 6, 7, and 8 allows remote attackers to e…96.8%높음8.19.8ADCWE-416● 실제 악용이 확인됨CVE-2015-0313Adobe · Flash PlayerUse-after-free vulnerability in Adobe Flash Player before 13.0.0.269 and 14.x through 16.x before 16…95.3%심각9.89.8ADCWE-416● 실제 악용이 확인됨CVE-2015-5122Adobe · Flash PlayerUse-after-free vulnerability in the DisplayObject class in the ActionScript 3 (AS3) implementation i…94.0%심각9.88.8MICWE-416● 실제 악용이 확인됨CVE-2010-0249Microsoft · Internet ExplorerUse-after-free vulnerability in Microsoft Internet Explorer 6, 6 SP1, 7, and 8 on Windows 2000 SP4; …91.9%높음8.87.8ADCWE-416● 랜섬웨어 캠페인에 사용됨CVE-2018-15982Adobe · Flash PlayerFlash Player versions 31.0.0.153 and earlier, and 31.0.0.108 and earlier have a use after free vulne…89.6%높음7.8

전체 목록

120건

CVE-2018-4878랜섬웨어 악용A use-after-free vulnerability was discovered in Adobe Flash Player before 28.0.0.161. This vulnerability occu…89.5%높음7.8
CVE-2013-3893악용 확인Use-after-free vulnerability in the SetMouseCapture implementation in mshtml.dll in Microsoft Internet Explore…87.5%높음8.8
CVE-2016-9079악용 확인A use-after-free vulnerability in SVG Animation has been discovered. An exploit built on this vulnerability ha…87.4%높음7.5
CVE-2020-0674악용 확인A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in…86.9%높음7.5
CVE-2014-0322악용 확인Use-after-free vulnerability in Microsoft Internet Explorer 9 and 10 allows remote attackers to execute arbitr…85.1%높음8.8
CVE-2020-3992랜섬웨어 악용OpenSLP as used in VMware ESXi (7.0 before ESXi_7.0.1-0.0.16850804, 6.7 before ESXi670-202010401-SG, 6.5 befor…83.0%심각9.8
CVE-2014-1776악용 확인Use-after-free vulnerability in Microsoft Internet Explorer 6 through 11 allows remote attackers to execute ar…82.7%심각9.8
CVE-2010-0806악용 확인Use-after-free vulnerability in the Peer Objects component (aka iepeers.dll) in Microsoft Internet Explorer 6,…82.2%높음8.8
CVE-2009-4324악용 확인Use-after-free vulnerability in the Doc.media.newPlayer method in Multimedia.api in Adobe Reader and Acrobat 9…81.9%높음7.8
CVE-2021-26411랜섬웨어 악용Internet Explorer Memory Corruption Vulnerability80.8%높음8.8
CVE-2012-4969악용 확인Use-after-free vulnerability in the CMshtmlEd::Exec function in mshtml.dll in Microsoft Internet Explorer 6 th…80.3%높음8.1
CVE-2012-4792악용 확인Use-after-free vulnerability in Microsoft Internet Explorer 6 through 8 allows remote attackers to execute arb…78.8%높음8.8
CVE-2017-0261악용 확인Microsoft Office 2010 SP2, Office 2013 SP1, and Office 2016 allow a remote code execution vulnerability when t…78.1%높음7.8
CVE-2013-1347악용 확인Microsoft Internet Explorer 8 does not properly handle objects in memory, which allows remote attackers to exe…77.7%높음8.8
CVE-2019-1429악용 확인A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in…77.3%높음7.5
CVE-2013-3897악용 확인Use-after-free vulnerability in the CDisplayPointer class in mshtml.dll in Microsoft Internet Explorer 6 throu…77.3%높음8.8
CVE-2021-40449랜섬웨어 악용Win32k Elevation of Privilege Vulnerability74.1%높음7.8
CVE-2013-2551랜섬웨어 악용Use-after-free vulnerability in Microsoft Internet Explorer 6 through 10 allows remote attackers to execute ar…73.9%높음8.8
CVE-2019-2215악용 확인A use-after-free in binder.c allows an elevation of privilege from an application to the Linux Kernel. No user…72.1%높음7.8
CVE-2019-0211악용 확인In Apache HTTP Server 2.4 releases 2.4.17 to 2.4.38, with MPM event, worker or prefork, code executing in less…65.0%높음7.8
CVE-2023-21608악용 확인Adobe Acrobat Reader versions 22.003.20282 (and earlier), 22.003.20281 (and earlier) and 20.005.30418 (and ear…61.5%높음7.8
CVE-2019-5786악용 확인Object lifetime issue in Blink in Google Chrome prior to 72.0.3626.121 allowed a remote attacker to potentiall…61.1%보통6.5
CVE-2026-2441악용 확인Use after free in CSS in Google Chrome prior to 145.0.7632.75 allowed a remote attacker to execute arbitrary c…55.1%높음8.8
CVE-2016-0984악용 확인Use-after-free vulnerability in Adobe Flash Player before 18.0.0.329 and 19.x and 20.x before 20.0.0.306 on Wi…54.5%높음8.8
CVE-2021-28550악용 확인Acrobat Reader DC versions versions 2021.001.20150 (and earlier), 2020.001.30020 (and earlier) and 2017.011.30…51.9%높음8.8
CVE-2019-13720악용 확인Use after free in WebAudio in Google Chrome prior to 78.0.3904.87 allowed a remote attacker to potentially exp…49.1%높음8.8
CVE-2020-9715악용 확인Adobe Acrobat and Reader versions 2020.009.20074 and earlier, 2020.001.30002, 2017.011.30171 and earlier, and …48.6%높음7.8
CVE-2021-22893랜섬웨어 악용Pulse Connect Secure 9.0R3/9.1R1 and higher is vulnerable to an authentication bypass vulnerability exposed by…47.2%심각10.0
CVE-2023-29336악용 확인Win32k Elevation of Privilege Vulnerability41.2%높음7.8
CVE-2023-21674악용 확인Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability41.0%높음8.8
CVE-2014-0496악용 확인Use-after-free vulnerability in Adobe Reader and Acrobat 10.x before 10.1.9 and 11.x before 11.0.06 on Windows…40.0%높음8.8
CVE-2021-37975악용 확인Use after free in V8 in Google Chrome prior to 94.0.4606.71 allowed a remote attacker to potentially exploit h…34.9%높음8.8
CVE-2021-30633악용 확인Use after free in Indexed DB API in Google Chrome prior to 93.0.4577.82 allowed a remote attacker who had comp…33.2%심각9.6
CVE-2024-38193악용 확인Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability28.7%높음7.8
CVE-2024-1086랜섬웨어 악용A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achiev…28.1%높음7.8
CVE-2023-36802악용 확인Microsoft Streaming Service Proxy Elevation of Privilege Vulnerability27.9%높음7.8
CVE-2023-28205악용 확인A use after free issue was addressed with improved memory management. This issue is fixed in Safari 16.4.1, iO…27.1%높음8.8
CVE-2016-7855악용 확인Use-after-free vulnerability in Adobe Flash Player before 23.0.0.205 on Windows and OS X and before 11.2.202.6…25.2%높음8.8
CVE-2022-3038악용 확인Use after free in Network Service in Google Chrome prior to 105.0.5195.52 allowed a remote attacker to potenti…24.9%높음8.8
CVE-2024-9680랜섬웨어 악용An attacker was able to achieve code execution in the content process by exploiting a use-after-free in Animat…23.2%심각9.8
CVE-2022-0609악용 확인Use after free in Animation in Google Chrome prior to 98.0.4758.102 allowed a remote attacker to potentially e…22.9%높음8.8
CVE-2014-8439악용 확인Adobe Flash Player before 13.0.0.258 and 14.x and 15.x before 15.0.0.239 on Windows and OS X and before 11.2.2…20.4%높음8.8
CVE-2015-5123악용 확인Use-after-free vulnerability in the BitmapData class in the ActionScript 3 (AS3) implementation in Adobe Flash…18.8%심각9.8
CVE-2016-7892악용 확인Adobe Flash Player versions 23.0.0.207 and earlier, 11.2.202.644 and earlier have an exploitable use after fre…18.8%높음8.8
CVE-2019-8605악용 확인A use after free issue was addressed with improved memory management. This issue is fixed in iOS 12.3, macOS M…17.6%높음7.8
CVE-2025-24085악용 확인A use after free issue was addressed with improved memory management. This issue is fixed in iOS 18.3 and iPad…17.5%심각10.0
CVE-2022-22620악용 확인A use after free issue was addressed with improved memory management. This issue is fixed in macOS Monterey 12…16.3%높음8.8
CVE-2015-2360악용 확인win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista SP2, Wind…14.8%높음8.8
CVE-2022-26485악용 확인Removing an XSLT parameter during processing could have lead to an exploitable use-after-free. We have had rep…14.3%높음8.8
CVE-2022-38181악용 확인The Arm Mali GPU kernel driver allows unprivileged users to access freed memory because GPU memory operations …14.1%높음8.8
CVE-2025-29824랜섬웨어 악용Use after free in Windows Common Log File System Driver allows an authorized attacker to elevate privileges lo…13.9%높음7.8
CVE-2021-30858악용 확인A use after free issue was addressed with improved memory management. This issue is fixed in iOS 14.8 and iPad…13.4%높음8.8
CVE-2023-32373악용 확인A use-after-free issue was addressed with improved memory management. This issue is fixed in watchOS 9.5, tvOS…12.2%높음8.8
CVE-2021-28663악용 확인The Arm Mali GPU kernel driver allows privilege escalation or information disclosure because GPU memory operat…12.1%높음8.8
CVE-2021-37973악용 확인Use after free in Portals in Google Chrome prior to 94.0.4606.61 allowed a remote attacker who had compromised…11.7%심각9.6
CVE-2021-30762악용 확인A use after free issue was addressed with improved memory management. This issue is fixed in iOS 12.5.4. Proce…11.0%높음8.8
CVE-2020-6572악용 확인Use after free in Media in Google Chrome prior to 81.0.4044.92 allowed a remote attacker to execute arbitrary …10.6%높음8.8
CVE-2022-2586악용 확인It was discovered that a nft object or expression could reference a nft set on a different nft table, leading …10.2%높음7.8
CVE-2017-0263악용 확인The kernel-mode drivers in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows S…10.0%높음7.8
CVE-2021-21193악용 확인Use after free in Blink in Google Chrome prior to 89.0.4389.90 allowed a remote attacker to potentially exploi…9.9%높음8.8
CVE-2021-21206악용 확인Use after free in Blink in Google Chrome prior to 89.0.4389.128 allowed a remote attacker to potentially explo…9.3%높음8.8
CVE-2021-34486악용 확인Windows Event Tracing Elevation of Privilege Vulnerability9.3%높음7.8
CVE-2025-43529악용 확인A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.2, iOS …8.8%높음8.8
CVE-2024-4671악용 확인Use after free in Visuals in Google Chrome prior to 124.0.6367.201 allowed a remote attacker who had compromis…8.3%심각9.6
CVE-2021-4102악용 확인Use after free in V8 in Google Chrome prior to 96.0.4664.110 allowed a remote attacker to potentially exploit …7.8%높음8.8
CVE-2021-30554악용 확인Use after free in WebGL in Google Chrome prior to 91.0.4472.114 allowed a remote attacker to potentially explo…7.4%높음8.8
CVE-2021-30661악용 확인A use after free issue was addressed with improved memory management. This issue is fixed in Safari 14.1, iOS …4.5%높음8.8
CVE-2023-43000악용 확인A use-after-free issue was addressed with improved memory management. This issue is fixed in macOS Ventura 13.…3.9%높음8.8
CVE-2023-0266악용 확인A use after free vulnerability exists in the ALSA PCM package in the Linux Kernel. SNDRV_CTL_IOCTL_ELEM_{READ|…3.7%높음7.0
CVE-2020-6819악용 확인Under certain conditions, when running the nsDocShell destructor, a race condition can cause a use-after-free.…3.0%높음8.1
CVE-2021-29256악용 확인. The Arm Mali GPU kernel driver allows an unprivileged user to achieve access to freed memory, leading to inf…3.0%높음8.8
CVE-2020-16017악용 확인Use after free in site isolation in Google Chrome prior to 86.0.4240.198 allowed a remote attacker who had com…2.7%심각9.6
CVE-2024-36971악용 확인In the Linux kernel, the following vulnerability has been resolved: net: fix __dst_negative_advice() race __ds…2.7%높음7.8
CVE-2025-62221악용 확인Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges l…2.5%높음7.8
CVE-2022-26486악용 확인An unexpected message in the WebGPU IPC framework could lead to a use-after-free and exploitable sandbox escap…2.4%심각9.6
CVE-2025-32709악용 확인Null pointer dereference in Windows Ancillary Function Driver for WinSock allows an authorized attacker to ele…2.2%높음7.8
CVE-2023-41974악용 확인A use-after-free issue was addressed with improved memory management. This issue is fixed in iOS 17 and iPadOS…1.9%높음7.8
CVE-2025-30400악용 확인Use after free in Windows DWM allows an authorized attacker to elevate privileges locally.1.9%높음7.8
CVE-2024-38107악용 확인Windows Power Dependency Coordinator Elevation of Privilege Vulnerability1.6%높음7.8
CVE-2025-21334악용 확인Windows Hyper-V NT Kernel Integration VSP Elevation of Privilege Vulnerability1.6%높음7.8
CVE-2021-1905악용 확인Possible use after free due to improper handling of memory mapping of multiple processes simultaneously. in Sn…1.5%높음7.8
CVE-2025-32701악용 확인Use after free in Windows Common Log File System Driver allows an authorized attacker to elevate privileges lo…1.4%높음7.8
CVE-2025-21335악용 확인Windows Hyper-V NT Kernel Integration VSP Elevation of Privilege Vulnerability1.4%높음7.8
CVE-2025-24983악용 확인Use after free in Windows Win32 Kernel Subsystem allows an authorized attacker to elevate privileges locally.1.4%높음7.0
CVE-2023-4211악용 확인A local non-privileged user can make improper GPU memory processing operations to gain access to already freed…1.1%보통5.5
CVE-2025-27038악용 확인Memory corruption while rendering graphics using Adreno GPU drivers in Chrome.1.0%높음7.5
CVE-2021-1048악용 확인In ep_loop_check_proc of eventpoll.c, there is a possible way to corrupt memory due to a use after free. This …1.0%높음7.8
CVE-2021-25370악용 확인An incorrect implementation handling file descriptor in dpu driver prior to SMR Mar-2021 Release 1 results in …0.9%보통4.4
CVE-2021-0920악용 확인In unix_scm_to_skb of af_unix.c, there is a possible use after free bug due to a race condition. This could le…0.8%보통6.4
CVE-2024-4610악용 확인Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver allows a …0.8%높음7.8
CVE-2026-5281악용 확인Use after free in Dawn in Google Chrome prior to 146.0.7680.178 allowed a remote attacker who had compromised …0.7%높음8.8
CVE-2019-8526악용 확인A use after free issue was addressed with improved memory management. This issue is fixed in macOS Mojave 10.1…0.7%높음7.8
CVE-2024-43047악용 확인Memory corruption while maintaining memory maps of HLOS memory.0.7%높음7.8
CVE-2023-33063악용 확인Memory corruption in DSP Services during a remote call from HLOS to DSP.0.6%높음7.8
CVE-2025-48543악용 확인In multiple locations, there is a possible way to escape chrome sandbox to attack android system_server due to…0.5%높음8.8
CVE-2022-22071악용 확인Possible use after free when process shell memory is freed using IOCTL munmap call and process initialization …0.5%높음7.8
CVE-2021-25394악용 확인A use after free vulnerability via race condition in MFC charger driver prior to SMR MAY-2021 Release 1 allows…0.4%보통6.4
CVE-2026-68820악용 확인Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privi…0.3%높음7.0
CVE-2026-69595Use after free in Windows Services for NFS ONCRPC XDR Driver allows an unauthorized attacker to execute code o…1.1%심각9.8
CVE-2026-69525Use after free in Windows Remote Desktop Services allows an unauthorized attacker to execute code over a netwo…1.1%심각9.8
CVE-2026-69730Use after free in Windows DNS allows an unauthorized attacker to execute code over a network.1.1%심각9.8
CVE-2026-72979Use after free in Windows DHCP Server allows an unauthorized attacker to execute code over a network.1.0%심각9.8
CVE-2026-78523Use after free in Windows DNS allows an unauthorized attacker to deny service over a network.1.0%보통5.9
CVE-2026-69579Use after free in Windows Message Queuing allows an unauthorized attacker to execute code over a network.1.0%심각9.8
CVE-2026-69551Use after free in Windows DNS allows an authorized attacker to execute code over a network.0.9%높음8.8
CVE-2026-72983Use after free in Windows Internet Connection Sharing (ICS) allows an unauthorized attacker to execute code ov…0.9%심각9.8
CVE-2026-73010Use after free in Windows Failover Cluster allows an unauthorized attacker to execute code over a network.0.9%심각9.8
CVE-2026-73009Use after free in Windows Secure Socket Tunneling Protocol (SSTP) allows an unauthorized attacker to execute c…0.9%심각9.8
CVE-2026-69712Use after free in Windows Key Distribution Center allows an authorized attacker to execute code over a network…0.9%높음8.8
CVE-2026-78445Use after free in Windows Services for NFS ONCRPC XDR Driver allows an unauthorized attacker to execute code o…0.9%심각9.8
CVE-2026-70342Use after free in Windows Ancillary Function Driver for WinSock allows an unauthorized attacker to elevate pri…0.9%높음8.1
CVE-2026-73512Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to 1.36.10, 1.37.…0.8%높음7.5
이 원장은 전체 CVE 가 아닙니다. NVD 에는 30만 건이 넘습니다. 여기 있는 것은 ① 악용이 확인된 것 ② 최근 공개된 것 ③ 국산 SW 관련 ④ KISA 권고에 등장한 것입니다. 무엇을 담았는지 밝히지 않으면 "없다" 를 "안전하다" 로 읽게 됩니다.