Aller au contenu
Appaloosa Scout
Sélection de la langue
fr en

Vulnérabilités

Vulnérabilités des apps suivies

318 CVE touchent une app ou un OS suivi (toutes sévérités, Windows). 213 figurent au catalogue CISA KEV, donc leur exploitation est avérée.

CVE correspondantes
318
Activement exploitées
213
Fenêtre de publication
2004-08-06 → 2026-04-14

Tri chronologique : du plus récent au plus ancien. Pour prioriser, utilise les filtres KEV / sévérité ci-dessus.

318 entrées Windows Exploit public Tout effacer
CVE
CVE-2019-1245
HIGH 6.5

DirectWrite Information Disclosure Vulnerability

CVE-2019-1244
HIGH 6.5

DirectWrite Information Disclosure Vulnerability

CVE-2019-1215
HIGH 7.8 KEV

Windows Elevation of Privilege Vulnerability

CVE-2019-1184
HIGH 6.7

Windows Elevation of Privilege Vulnerability

CVE-2019-1170
HIGH 7.9

Windows NTFS Elevation of Privilege Vulnerability

CVE-2019-1153
HIGH 5.5

Microsoft Graphics Component Information Disclosure Vulnerability

CVE-2019-1152
CRITICAL 8.8

Microsoft Graphics Remote Code Execution Vulnerability

CVE-2019-1151
CRITICAL 8.8

Microsoft Graphics Remote Code Execution Vulnerability

CVE-2019-1150
CRITICAL 8.8

Microsoft Graphics Remote Code Execution Vulnerability

CVE-2019-1149
CRITICAL 8.8

Microsoft Graphics Remote Code Execution Vulnerability

CVE-2019-1148
HIGH 5.5

Microsoft Graphics Component Information Disclosure Vulnerability

CVE-2019-1145
CRITICAL 8.8

Microsoft Graphics Remote Code Execution Vulnerability

CVE-2019-1144
CRITICAL 8.8

Microsoft Graphics Remote Code Execution Vulnerability

CVE-2019-1125
HIGH 5.6

Windows Kernel Information Disclosure Vulnerability

CVE-2019-9816
MEDIUM 5.9 1 app

A possible vulnerability exists where type confusion can occur when manipulating JavaScript objects in object groups, allowing for the bypassing of security ch…

CVE-2019-11708
CRITICAL 10.0 KEV 1 app

Insufficient vetting of parameters passed with the Prompt:Open IPC message between child and parent processes can result in the non-sandboxed parent process op…

CVE-2019-11707
HIGH 8.8 KEV 1 app

A type confusion vulnerability can occur when manipulating JavaScript objects due to issues in Array.pop. This can allow for an exploitable crash. We are aware…

CVE-2019-11706
HIGH 7.5 1 app

A flaw in Thunderbird's implementation of iCal causes a type confusion in icaltimezone_get_vtimezone_properties when processing certain email messages, resulti…

CVE-2019-11705
CRITICAL 9.8 1 app

A flaw in Thunderbird's implementation of iCal causes a stack buffer overflow in icalrecur_add_bydayrules when processing certain email messages, resulting in …

CVE-2019-11704
CRITICAL 9.8 1 app

A flaw in Thunderbird's implementation of iCal causes a heap buffer overflow in icalmemory_strdup_and_dequote when processing certain email messages, resulting…

CVE-2019-11703
CRITICAL 9.8 1 app

A flaw in Thunderbird's implementation of iCal causes a heap buffer overflow in parser_get_next_char when processing certain email messages, resulting in a pot…

CVE-2019-1128
HIGH 7.8

DirectWrite Remote Code Execution Vulnerability

CVE-2019-1127
HIGH 7.8

DirectWrite Remote Code Execution Vulnerability

CVE-2019-1124
HIGH 7.8

DirectWrite Remote Code Execution Vulnerability

CVE-2019-1123
HIGH 7.8

DirectWrite Remote Code Execution Vulnerability

CVE-2019-1122
HIGH 7.8

DirectWrite Remote Code Execution Vulnerability

CVE-2019-1121
HIGH 7.8

DirectWrite Remote Code Execution Vulnerability

CVE-2019-1120
HIGH 7.8

DirectWrite Remote Code Execution Vulnerability

CVE-2019-1119
HIGH 7.8

DirectWrite Remote Code Execution Vulnerability

CVE-2019-1118
HIGH 7.8

DirectWrite Remote Code Execution Vulnerability

CVE-2019-1117
HIGH 7.8

DirectWrite Remote Code Execution Vulnerability

CVE-2019-1089
HIGH 7.8

Windows RPCSS Elevation of Privilege Vulnerability

CVE-2019-1019
HIGH 8.5

Microsoft Windows Security Feature Bypass Vulnerability

CVE-2019-0959
HIGH 7.0

Windows Common Log File System Driver Elevation of Privilege Vulnerability

CVE-2019-0948
MEDIUM 4.7

Windows Event Viewer Information Disclosure Vulnerability

CVE-2019-0943
HIGH 7.8

Windows ALPC Elevation of Privilege Vulnerability

CVE-2019-0881
HIGH 8.8

Windows Kernel Elevation of Privilege Vulnerability

CVE-2019-0863
HIGH 7.8 KEV

Windows Error Reporting Elevation of Privilege Vulnerability

CVE-2019-9813
HIGH 8.8 1 app

Incorrect handling of __proto__ mutations may lead to type confusion in IonMonkey JIT code and can be leveraged for arbitrary memory read and write. This vulne…

CVE-2019-9810
HIGH 8.8 1 app

Incorrect alias information in IonMonkey JIT compiler for Array.prototype.slice method may lead to missing bounds check and a buffer overflow. This vulnerabili…

CVE-2019-9792
CRITICAL 9.8 1 app

The IonMonkey just-in-time (JIT) compiler can leak an internal JS_OPTIMIZED_OUT magic value to the running script during a bailout. This magic value can then b…

CVE-2019-9791
CRITICAL 9.8 1 app

The type inference system allows the compilation of functions that can cause type confusions between arbitrary objects when compiled through the IonMonkey just…

CVE-2019-0841
HIGH 6.8 KEV

Windows Elevation of Privilege Vulnerability

CVE-2019-0836
HIGH 7.0

Windows Elevation of Privilege Vulnerability

CVE-2019-0805
HIGH 6.7

Windows Elevation of Privilege Vulnerability

CVE-2019-0803
HIGH 7.0 KEV

Win32k Elevation of Privilege Vulnerability

CVE-2019-0796
HIGH 6.3

Windows Elevation of Privilege Vulnerability

CVE-2019-0735
HIGH 7.0

Windows CSRSS Elevation of Privilege Vulnerability

CVE-2019-0732
HIGH 5.3

Windows Security Feature Bypass Vulnerability

CVE-2019-0731
HIGH 6.8

Windows Elevation of Privilege Vulnerability