Vulnérabilités
Vulnérabilités des apps suivies
26 374 CVE touchent une app ou un OS suivi (toutes sévérités, toutes plateformes). 373 figurent au catalogue CISA KEV, donc leur exploitation est avérée.
- CVE correspondantes
- 26 374
- Activement exploitées
- 373
- Fenêtre de publication
- 1997-01-01 → 2026-10-06
Tri chronologique : du plus récent au plus ancien. Pour prioriser, utilise les filtres KEV / sévérité ci-dessus.
| CVE |
|---|
|
CVE-2026-78453
MEDIUM 6.5
Integer underflow (wrap or wraparound) in Microsoft Windows SCSI Class System File allows an unauthorized attacker to disclose information over a network. |
|
CVE-2026-78452
MEDIUM 4.6
Out-of-bounds read in Microsoft Windows SCSI Class System File allows an unauthorized attacker to disclose information with a physical attack. |
|
CVE-2026-78451
MEDIUM 6.8
Untrusted pointer dereference in Microsoft Windows SCSI Class System File allows an unauthorized attacker to elevate privileges with a physical attack. |
|
CVE-2026-78450
HIGH 8.1
Use after free in Reliable Multicast Transport Driver (RMCAST) allows an unauthorized attacker to execute code over a network. |
|
CVE-2026-78449
HIGH 8.1
Use after free in Reliable Multicast Transport Driver (RMCAST) allows an unauthorized attacker to execute code over a network. |
|
CVE-2026-78448
HIGH 7.8
Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally. |
|
CVE-2026-78446
HIGH 7.5
Use after free in Windows Distributed File System (DFS) allows an authorized attacker to execute code over a network. |
|
CVE-2026-78445
CRITICAL 9.8
Use after free in Windows Services for NFS ONCRPC XDR Driver allows an unauthorized attacker to execute code over a network. |
|
CVE-2026-78444
HIGH 8.1
Untrusted pointer dereference in Windows Failover Cluster allows an unauthorized attacker to execute code over a network. |
|
CVE-2026-78439
Stack-based buffer overflow in Microsoft Graphics Component allows an unauthorized attacker to execute code over a network. |
|
CVE-2026-77911
Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information over a network. |
|
CVE-2026-77905
HIGH 7.0
Use after free in Windows Management Instrumentation allows an authorized attacker to elevate privileges locally. |
|
CVE-2026-77904
HIGH 7.8
Heap-based buffer overflow in Windows Volume Manager Extension Driver allows an authorized attacker to elevate privileges locally. |
|
CVE-2026-77901
Null pointer dereference in Microsoft Office Word allows an unauthorized attacker to execute code over a network. |
|
CVE-2026-77899
HIGH 7.0
Use after free in Windows Security Center allows an authorized attacker to elevate privileges locally. |
|
CVE-2026-77896
MEDIUM 6.5
Integer overflow or wraparound in Remote Desktop Client allows an unauthorized attacker to deny service over a network. |
|
CVE-2026-77895
HIGH 7.5
Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to deny service over a network. |
|
CVE-2026-77894
HIGH 7.0
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Installer allows an authorized attacker to elevate privi… |
|
CVE-2026-77893
HIGH 7.5
Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to deny service over a network. |
|
CVE-2026-77892
MEDIUM 6.8
No cwe for this issue in Windows Boot Manager allows an unauthorized attacker to elevate privileges with a physical attack. |
|
CVE-2026-77891
MEDIUM 6.4
Out-of-bounds read in Windows DHCP Server allows an authorized attacker to execute code locally. |
|
CVE-2026-77890
HIGH 7.5
Access of resource using incompatible type ('type confusion') in Windows DHCP Server allows an unauthorized attacker to deny service over a network. |
|
CVE-2026-77889
HIGH 7.5
Access of resource using incompatible type ('type confusion') in Windows DHCP Server allows an unauthorized attacker to deny service over a network. |
|
CVE-2026-77888
HIGH 7.5
Access of resource using incompatible type ('type confusion') in Windows DHCP Server allows an unauthorized attacker to deny service over a network. |
|
CVE-2026-77887
MEDIUM 6.4
Out-of-bounds read in Windows DHCP Server allows an authorized attacker to execute code locally. |
|
CVE-2026-77886
HIGH 7.5
Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to deny service over a network. |
|
CVE-2026-77505
HIGH 8.1
Use after free in DNS Server allows an unauthorized attacker to execute code over a network. |
|
CVE-2026-77504
HIGH 8.8
Double free in Microsoft Office Word allows an unauthorized attacker to execute code over a network. |
|
CVE-2026-77503
HIGH 8.4
Out-of-bounds read in Windows NTFS allows an unauthorized attacker to elevate privileges locally. |
|
CVE-2026-77502
HIGH 7.5
Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to deny service over a network. |
|
CVE-2026-77501
HIGH 7.5
Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to deny service over a network. |
|
CVE-2026-77500
HIGH 7.8
Release of invalid pointer or reference in Windows Device Association Service allows an authorized attacker to elevate privileges locally. |
|
CVE-2026-77499
HIGH 7.5
Access of resource using incompatible type ('type confusion') in Windows DHCP Server allows an unauthorized attacker to deny service over a network. |
|
CVE-2026-77498
HIGH 7.5
Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to deny service over a network. |
|
CVE-2026-77495
HIGH 8.8
Heap-based buffer overflow in Windows Imaging Component allows an unauthorized attacker to execute code over a network. |
|
CVE-2026-77494
HIGH 7.5
Access of resource using incompatible type ('type confusion') in Windows DHCP Server allows an unauthorized attacker to deny service over a network. |
|
CVE-2026-77493
CRITICAL 9.8
Double free in Microsoft Graphics Component allows an unauthorized attacker to execute code over a network. |
|
CVE-2026-77492
MEDIUM 5.5
Out-of-bounds read in Storage Port Driver allows an authorized attacker to disclose information locally. |
|
CVE-2026-77491
MEDIUM 5.5
Out-of-bounds read in Windows GDI allows an unauthorized attacker to disclose information locally. |
|
CVE-2026-77489
HIGH 7.8
Null pointer dereference in Windows Biometric Service allows an authorized attacker to elevate privileges locally. |
|
CVE-2026-73026
HIGH 7.8
Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally. |
|
CVE-2026-73025
CRITICAL 9.8
Weak authentication in Windows iSCSI allows an unauthorized attacker to bypass a security feature over a network. |
|
CVE-2026-73024
HIGH 7.8
Heap-based buffer overflow in Windows Services for NFS ONCRPC XDR Driver allows an authorized attacker to elevate privileges locally. |
|
CVE-2026-73023
HIGH 8.8
Heap-based buffer overflow in Windows Imaging Component allows an unauthorized attacker to execute code over a network. |
|
CVE-2026-73022
HIGH 7.0
Use after free in Windows Modern Device Management (MDM) allows an authorized attacker to elevate privileges locally. |
|
CVE-2026-73021
HIGH 7.8
Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally. |
|
CVE-2026-73020
HIGH 7.8
Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally. |
|
CVE-2026-73019
MEDIUM 4.3
Improper resolution of path equivalence in Windows URL Moniker allows an unauthorized attacker to bypass a security feature over a network. |
|
CVE-2026-73018
HIGH 8.8
Heap-based buffer overflow in Graphic Fonts allows an unauthorized attacker to execute code over a network. |
|
CVE-2026-73017
HIGH 7.5
Heap-based buffer overflow in Windows Graphics Kernel allows an authorized attacker to execute code locally. |
Gérez votre parc avec Appaloosa
Appaloosa pousse mises à jour d'OS, apps et politiques sur vos appareils Windows, macOS, iOS et Android depuis une seule console.