Aller au contenu
Appaloosa Scout

Vulnérabilités

Vulnérabilités des apps suivies

845 entrées

Tri chronologique : du plus récent au plus ancien. Pour prioriser, utilise les filtres KEV / sévérité ci-dessus.

CVE
CVE-2025-1009
CRITICAL 9.8 Réseau 1 apps

An attacker could have caused a use-after-free via crafted XSLT data, leading to a potentially exploitable crash. This vulnerability was fixed in Firefox 135, …

CVE-2025-21311
CRITICAL 9.8

Windows NTLM V1 Elevation of Privilege Vulnerability

CVE-2025-21309
CRITICAL 8.1

Windows Remote Desktop Services Remote Code Execution Vulnerability

CVE-2025-21307
CRITICAL 9.8

Windows Reliable Multicast Transport Driver (RMCAST) Remote Code Execution Vulnerability

CVE-2025-21298
CRITICAL 9.8

Windows OLE Remote Code Execution Vulnerability

CVE-2025-21297
CRITICAL 8.1

Windows Remote Desktop Services Remote Code Execution Vulnerability

CVE-2025-21296
CRITICAL 7.5

BranchCache Remote Code Execution Vulnerability

CVE-2025-21295
CRITICAL 8.1

SPNEGO Extended Negotiation (NEGOEX) Security Mechanism Remote Code Execution Vulnerability

CVE-2025-21294
CRITICAL 8.1

Microsoft Digest Authentication Remote Code Execution Vulnerability

CVE-2025-0247
CRITICAL 9.8 Réseau 1 apps

Memory safety bugs present in Firefox 133 and Thunderbird 133. Some of these bugs showed evidence of memory corruption and we presume that with enough effort s…

CVE-2024-49132
CRITICAL 8.1

Windows Remote Desktop Services Remote Code Execution Vulnerability

CVE-2024-49128
CRITICAL 8.1

Windows Remote Desktop Services Remote Code Execution Vulnerability

CVE-2024-49127
CRITICAL 8.1

Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability

CVE-2024-49126
CRITICAL 8.1

Windows Local Security Authority Subsystem Service (LSASS) Remote Code Execution Vulnerability

CVE-2024-49124
CRITICAL 8.1

Lightweight Directory Access Protocol (LDAP) Client Remote Code Execution Vulnerability

CVE-2024-49123
CRITICAL 8.1

Windows Remote Desktop Services Remote Code Execution Vulnerability

CVE-2024-49122
CRITICAL 8.1

Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability

CVE-2024-49120
CRITICAL 8.1

Windows Remote Desktop Services Remote Code Execution Vulnerability

CVE-2024-49119
CRITICAL 8.1

Windows Remote Desktop Services Remote Code Execution Vulnerability

CVE-2024-49118
CRITICAL 8.1

Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability

CVE-2024-49117
CRITICAL 8.8

Windows Hyper-V Remote Code Execution Vulnerability

CVE-2024-49116
CRITICAL 8.1

Windows Remote Desktop Services Remote Code Execution Vulnerability

CVE-2024-49115
CRITICAL 8.1

Windows Remote Desktop Services Remote Code Execution Vulnerability

CVE-2024-49112
CRITICAL 9.8

Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability

CVE-2024-49108
CRITICAL 8.1

Windows Remote Desktop Services Remote Code Execution Vulnerability

CVE-2024-49106
CRITICAL 8.1

Windows Remote Desktop Services Remote Code Execution Vulnerability

CVE-2024-49105
CRITICAL 8.4

Remote Desktop Client Remote Code Execution Vulnerability

CVE-2024-11705
CRITICAL 9.1 Réseau 1 apps

`NSC_DeriveKey` inadvertently assumed that the `phKey` parameter is always non-NULL. When it was passed as NULL, a segmentation fault (SEGV) occurred, leading …

CVE-2024-11704
CRITICAL 9.8 Réseau 1 apps

A double-free issue could have occurred in `sec_pkcs7_decoder_start_decrypt()` when handling an error path. Under specific conditions, the same symmetric key c…

CVE-2024-11698
CRITICAL 9.8 Réseau 1 apps

A flaw in handling fullscreen transitions may have inadvertently caused the application to become stuck in fullscreen mode when a modal dialog was opened durin…

CVE-2024-11693
CRITICAL 9.8 Réseau 1 apps

The executable file warning was not presented when downloading .library-ms files. *Note: This issue only affected Windows operating systems. Other operating …

CVE-2024-43639
CRITICAL 9.8

Windows KDC Proxy Remote Code Execution Vulnerability

CVE-2024-43625
CRITICAL 8.1

Microsoft Windows VMSwitch Elevation of Privilege Vulnerability

CVE-2024-9680
CRITICAL 9.8 KEV Réseau 1 apps

An attacker was able to achieve code execution in the content process by exploiting a use-after-free in Animation timelines. We have had reports of this vulner…

CVE-2024-43582
CRITICAL 8.1

Remote Desktop Protocol Server Remote Code Execution Vulnerability

CVE-2024-9402
CRITICAL 9.8 Réseau 1 apps

Memory safety bugs present in Firefox 130, Firefox ESR 128.2, and Thunderbird 128.2. Some of these bugs showed evidence of memory corruption and we presume tha…

CVE-2024-9401
CRITICAL 9.8 Réseau 1 apps

Memory safety bugs present in Firefox 130, Firefox ESR 115.15, Firefox ESR 128.2, and Thunderbird 128.2. Some of these bugs showed evidence of memory corruptio…

CVE-2024-9392
CRITICAL 9.8 Réseau 1 apps

A compromised content process could have allowed for the arbitrary loading of cross-origin pages. This vulnerability affects Firefox < 131, Firefox ESR < 128.3…

CVE-2024-8387
CRITICAL 9.8 Réseau 1 apps

Memory safety bugs present in Firefox 129, Firefox ESR 128.1, and Thunderbird 128.1. Some of these bugs showed evidence of memory corruption and we presume tha…

CVE-2024-38160
CRITICAL 9.1

Windows Network Virtualization Remote Code Execution Vulnerability

CVE-2024-38159
CRITICAL 9.1

Windows Network Virtualization Remote Code Execution Vulnerability

CVE-2024-38140
CRITICAL 9.8

Windows Reliable Multicast Transport Driver (RMCAST) Remote Code Execution Vulnerability

CVE-2024-38063
CRITICAL 9.8

Windows TCP/IP Remote Code Execution Vulnerability

CVE-2024-7519
CRITICAL 9.6 Réseau 1 apps

Insufficient checks when processing graphics shared memory could have led to memory corruption. This could be leveraged by an attacker to perform a sandbox esc…

CVE-2024-6611
CRITICAL 9.8 Réseau 1 apps

A nested iframe, triggering a cross-site navigation, could send SameSite=Strict or Lax cookies. This vulnerability affects Firefox < 128 and Thunderbird < 128.

CVE-2024-6606
CRITICAL 9.8 Réseau 1 apps

Clipboard code failed to check the index on an array access. This could have led to an out-of-bounds read. This vulnerability affects Firefox < 128 and Thunder…

CVE-2024-6602
CRITICAL 9.8 Réseau 1 apps

A mismatch between allocator and deallocator could have led to memory corruption. This vulnerability affects Firefox < 128, Firefox ESR < 115.13, Thunderbird <…

CVE-2024-38077
CRITICAL 9.8

Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability

CVE-2024-38076
CRITICAL 9.8

Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability

CVE-2024-38074
CRITICAL 9.8

Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability