Aller au contenu
Appaloosa Scout

Vulnérabilités

Vulnérabilités des apps suivies

516 entrées

Tri chronologique : du plus récent au plus ancien. Pour prioriser, utilise les filtres KEV / sévérité ci-dessus.

CVE
CVE-2019-3855
HIGH 8.8 Réseau 1 apps

An integer overflow flaw which could lead to an out of bounds write was discovered in libssh2 before 1.8.1 in the way packets are read from the server. A remot…

CVE-2018-20058
HIGH 7.5 Réseau 1 apps

In Evernote before 7.6 on macOS, there is a local file path traversal issue in attachment previewing, aka MACOSNOTE-28634.

CVE-2018-16844
HIGH 7.5 Réseau 1 apps

nginx before versions 1.15.6 and 1.14.1 has a vulnerability in the implementation of HTTP/2 that can allow for excessive CPU usage. This issue affects nginx co…

CVE-2018-16843
HIGH 7.5 Réseau 1 apps

nginx before versions 1.15.6 and 1.14.1 has a vulnerability in the implementation of HTTP/2 that can allow for excessive memory consumption. This issue affects…

CVE-2018-1167
HIGH 8.8 Réseau 3 apps

This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Spotify Music Player 1.0.69.336. User interaction is requir…

CVE-2017-7167
HIGH 7.8 Local 1 apps

An issue was discovered in certain Apple products. Xcode before 9.2 is affected. The issue involves the "ld64" component. A buffer overflow allows remote attac…

CVE-2017-7137
HIGH 7.8 Local 1 apps

An issue was discovered in certain Apple products. Xcode before 9 is affected. The issue involves the "ld64" component. It allows remote attackers to execute a…

CVE-2017-7136
HIGH 7.8 Local 1 apps

An issue was discovered in certain Apple products. Xcode before 9 is affected. The issue involves the "ld64" component. It allows remote attackers to execute a…

CVE-2017-7135
HIGH 7.8 Local 1 apps

An issue was discovered in certain Apple products. Xcode before 9 is affected. The issue involves the "ld64" component. It allows remote attackers to execute a…

CVE-2017-7134
HIGH 7.8 Local 1 apps

An issue was discovered in certain Apple products. Xcode before 9 is affected. The issue involves the "ld64" component. It allows remote attackers to execute a…

CVE-2017-7529
HIGH 7.5 Réseau 1 apps

Nginx versions since 0.5.6 up to and including 1.13.2 are vulnerable to integer overflow vulnerability in nginx range filter module resulting into leak of pote…

CVE-2016-1246
HIGH 7.5 Réseau

Buffer overflow in the DBD::mysql module before 4.037 for Perl allows context-dependent attackers to cause a denial of service (crash) via vectors related to a…

CVE-2016-4705
HIGH 7.8 Local 1 apps

otool in Apple Xcode before 8 allows local users to gain privileges or cause a denial of service (memory corruption and application crash) via unspecified vect…

CVE-2016-4704
HIGH 7.8 Local 1 apps

otool in Apple Xcode before 8 allows local users to gain privileges or cause a denial of service (memory corruption and application crash) via unspecified vect…

CVE-2016-1765
HIGH 7.8 Local 1 apps

otool in Apple Xcode before 7.3 allows local users to gain privileges or cause a denial of service (memory corruption and application crash) via unspecified ve…

CVE-2016-0742
HIGH 7.5 Réseau 1 apps

The resolver in nginx before 1.8.1 and 1.9.x before 1.9.10 allows remote attackers to cause a denial of service (invalid pointer dereference and worker process…