Vulnérabilités
Vulnérabilités des apps suivies
845 entrées
Tri chronologique : du plus récent au plus ancien. Pour prioriser, utilise les filtres KEV / sévérité ci-dessus.
| CVE |
|---|
|
CVE-2025-1009
CRITICAL 9.8
Réseau 1 apps
An attacker could have caused a use-after-free via crafted XSLT data, leading to a potentially exploitable crash. This vulnerability was fixed in Firefox 135, … |
|
CVE-2025-21311
CRITICAL 9.8
Windows NTLM V1 Elevation of Privilege Vulnerability |
|
CVE-2025-21309
CRITICAL 8.1
Windows Remote Desktop Services Remote Code Execution Vulnerability |
|
CVE-2025-21307
CRITICAL 9.8
Windows Reliable Multicast Transport Driver (RMCAST) Remote Code Execution Vulnerability |
|
CVE-2025-21298
CRITICAL 9.8
Windows OLE Remote Code Execution Vulnerability |
|
CVE-2025-21297
CRITICAL 8.1
Windows Remote Desktop Services Remote Code Execution Vulnerability |
|
CVE-2025-21296
CRITICAL 7.5
BranchCache Remote Code Execution Vulnerability |
|
CVE-2025-21295
CRITICAL 8.1
SPNEGO Extended Negotiation (NEGOEX) Security Mechanism Remote Code Execution Vulnerability |
|
CVE-2025-21294
CRITICAL 8.1
Microsoft Digest Authentication Remote Code Execution Vulnerability |
|
CVE-2025-0247
CRITICAL 9.8
Réseau 1 apps
Memory safety bugs present in Firefox 133 and Thunderbird 133. Some of these bugs showed evidence of memory corruption and we presume that with enough effort s… |
|
CVE-2024-49132
CRITICAL 8.1
Windows Remote Desktop Services Remote Code Execution Vulnerability |
|
CVE-2024-49128
CRITICAL 8.1
Windows Remote Desktop Services Remote Code Execution Vulnerability |
|
CVE-2024-49127
CRITICAL 8.1
Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability |
|
CVE-2024-49126
CRITICAL 8.1
Windows Local Security Authority Subsystem Service (LSASS) Remote Code Execution Vulnerability |
|
CVE-2024-49124
CRITICAL 8.1
Lightweight Directory Access Protocol (LDAP) Client Remote Code Execution Vulnerability |
|
CVE-2024-49123
CRITICAL 8.1
Windows Remote Desktop Services Remote Code Execution Vulnerability |
|
CVE-2024-49122
CRITICAL 8.1
Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability |
|
CVE-2024-49120
CRITICAL 8.1
Windows Remote Desktop Services Remote Code Execution Vulnerability |
|
CVE-2024-49119
CRITICAL 8.1
Windows Remote Desktop Services Remote Code Execution Vulnerability |
|
CVE-2024-49118
CRITICAL 8.1
Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability |
|
CVE-2024-49117
CRITICAL 8.8
Windows Hyper-V Remote Code Execution Vulnerability |
|
CVE-2024-49116
CRITICAL 8.1
Windows Remote Desktop Services Remote Code Execution Vulnerability |
|
CVE-2024-49115
CRITICAL 8.1
Windows Remote Desktop Services Remote Code Execution Vulnerability |
|
CVE-2024-49112
CRITICAL 9.8
Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability |
|
CVE-2024-49108
CRITICAL 8.1
Windows Remote Desktop Services Remote Code Execution Vulnerability |
|
CVE-2024-49106
CRITICAL 8.1
Windows Remote Desktop Services Remote Code Execution Vulnerability |
|
CVE-2024-49105
CRITICAL 8.4
Remote Desktop Client Remote Code Execution Vulnerability |
|
CVE-2024-11705
CRITICAL 9.1
Réseau 1 apps
`NSC_DeriveKey` inadvertently assumed that the `phKey` parameter is always non-NULL. When it was passed as NULL, a segmentation fault (SEGV) occurred, leading … |
|
CVE-2024-11704
CRITICAL 9.8
Réseau 1 apps
A double-free issue could have occurred in `sec_pkcs7_decoder_start_decrypt()` when handling an error path. Under specific conditions, the same symmetric key c… |
|
CVE-2024-11698
CRITICAL 9.8
Réseau 1 apps
A flaw in handling fullscreen transitions may have inadvertently caused the application to become stuck in fullscreen mode when a modal dialog was opened durin… |
|
CVE-2024-11693
CRITICAL 9.8
Réseau 1 apps
The executable file warning was not presented when downloading .library-ms files. *Note: This issue only affected Windows operating systems. Other operating … |
|
CVE-2024-43639
CRITICAL 9.8
Windows KDC Proxy Remote Code Execution Vulnerability |
|
CVE-2024-43625
CRITICAL 8.1
Microsoft Windows VMSwitch Elevation of Privilege Vulnerability |
|
CVE-2024-9680
CRITICAL 9.8
KEV
Réseau 1 apps
An attacker was able to achieve code execution in the content process by exploiting a use-after-free in Animation timelines. We have had reports of this vulner… |
|
CVE-2024-43582
CRITICAL 8.1
Remote Desktop Protocol Server Remote Code Execution Vulnerability |
|
CVE-2024-9402
CRITICAL 9.8
Réseau 1 apps
Memory safety bugs present in Firefox 130, Firefox ESR 128.2, and Thunderbird 128.2. Some of these bugs showed evidence of memory corruption and we presume tha… |
|
CVE-2024-9401
CRITICAL 9.8
Réseau 1 apps
Memory safety bugs present in Firefox 130, Firefox ESR 115.15, Firefox ESR 128.2, and Thunderbird 128.2. Some of these bugs showed evidence of memory corruptio… |
|
CVE-2024-9392
CRITICAL 9.8
Réseau 1 apps
A compromised content process could have allowed for the arbitrary loading of cross-origin pages. This vulnerability affects Firefox < 131, Firefox ESR < 128.3… |
|
CVE-2024-8387
CRITICAL 9.8
Réseau 1 apps
Memory safety bugs present in Firefox 129, Firefox ESR 128.1, and Thunderbird 128.1. Some of these bugs showed evidence of memory corruption and we presume tha… |
|
CVE-2024-38160
CRITICAL 9.1
Windows Network Virtualization Remote Code Execution Vulnerability |
|
CVE-2024-38159
CRITICAL 9.1
Windows Network Virtualization Remote Code Execution Vulnerability |
|
CVE-2024-38140
CRITICAL 9.8
Windows Reliable Multicast Transport Driver (RMCAST) Remote Code Execution Vulnerability |
|
CVE-2024-38063
CRITICAL 9.8
Windows TCP/IP Remote Code Execution Vulnerability |
|
CVE-2024-7519
CRITICAL 9.6
Réseau 1 apps
Insufficient checks when processing graphics shared memory could have led to memory corruption. This could be leveraged by an attacker to perform a sandbox esc… |
|
CVE-2024-6611
CRITICAL 9.8
Réseau 1 apps
A nested iframe, triggering a cross-site navigation, could send SameSite=Strict or Lax cookies. This vulnerability affects Firefox < 128 and Thunderbird < 128. |
|
CVE-2024-6606
CRITICAL 9.8
Réseau 1 apps
Clipboard code failed to check the index on an array access. This could have led to an out-of-bounds read. This vulnerability affects Firefox < 128 and Thunder… |
|
CVE-2024-6602
CRITICAL 9.8
Réseau 1 apps
A mismatch between allocator and deallocator could have led to memory corruption. This vulnerability affects Firefox < 128, Firefox ESR < 115.13, Thunderbird <… |
|
CVE-2024-38077
CRITICAL 9.8
Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability |
|
CVE-2024-38076
CRITICAL 9.8
Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability |
|
CVE-2024-38074
CRITICAL 9.8
Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability |