Vulnérabilités
Vulnérabilités des apps suivies
8 497 entrées
Tri chronologique : du plus récent au plus ancien. Pour prioriser, utilise les filtres KEV / sévérité ci-dessus.
| CVE |
|---|
|
CVE-2024-11695
MEDIUM 5.4
Réseau 1 apps
A crafted URL containing Arabic script and whitespace characters could have hidden the true origin of the page, resulting in a potential spoofing attack. This … |
|
CVE-2024-11694
MEDIUM 6.1
Réseau 1 apps
Enhanced Tracking Protection's Strict mode may have inadvertently allowed a CSP `frame-src` bypass and DOM-based XSS through the Google SafeFrame shim in the W… |
|
CVE-2024-11693
CRITICAL 9.8
Réseau 1 apps
The executable file warning was not presented when downloading .library-ms files. *Note: This issue only affected Windows operating systems. Other operating … |
|
CVE-2024-11692
MEDIUM 4.3
Réseau 1 apps
An attacker could cause a select dropdown to be shown over another tab; this could have led to user confusion and possible spoofing attacks. This vulnerability… |
|
CVE-2024-11691
HIGH 8.8
Réseau 1 apps
Certain WebGL operations on Apple silicon M series devices could have lead to an out-of-bounds write and memory corruption due to a flaw in Apple's GPU driver.… |
|
CVE-2024-11612
MEDIUM 6.5
Réseau 1 apps
7-Zip CopyCoder Infinite Loop Denial-of-Service Vulnerability. This vulnerability allows remote attackers to create a denial-of-service condition on affected i… |
|
CVE-2024-11477
HIGH 7.8
Local 1 apps
7-Zip Zstandard Decompression Integer Underflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on af… |
|
CVE-2024-11159
MEDIUM 4.3
Réseau 1 apps
Using remote content in OpenPGP encrypted messages can lead to the disclosure of plaintext. This vulnerability affects Thunderbird < 128.4.3 and Thunderbird < … |
|
CVE-2024-49039
HIGH 8.8
KEV
Local
Windows Task Scheduler Elevation of Privilege Vulnerability |
|
CVE-2024-49046
HIGH 7.8
Windows Win32 Kernel Subsystem Elevation of Privilege Vulnerability |
|
CVE-2024-49019
HIGH 7.8
Active Directory Certificate Services Elevation of Privilege Vulnerability |
|
CVE-2024-43646
HIGH 6.7
Windows Secure Kernel Mode Elevation of Privilege Vulnerability |
|
CVE-2024-43645
HIGH 6.7
Windows Defender Application Control (WDAC) Security Feature Bypass Vulnerability |
|
CVE-2024-43644
HIGH 7.8
Windows Client-Side Caching Elevation of Privilege Vulnerability |
|
CVE-2024-43643
HIGH 6.8
Windows USB Video Class System Driver Elevation of Privilege Vulnerability |
|
CVE-2024-43642
HIGH 7.5
Windows SMB Denial of Service Vulnerability |
|
CVE-2024-43641
HIGH 7.8
Windows Registry Elevation of Privilege Vulnerability |
|
CVE-2024-43640
HIGH 7.8
Windows Kernel-Mode Driver Elevation of Privilege Vulnerability |
|
CVE-2024-43639
CRITICAL 9.8
Windows KDC Proxy Remote Code Execution Vulnerability |
|
CVE-2024-43638
HIGH 6.8
Windows USB Video Class System Driver Elevation of Privilege Vulnerability |
|
CVE-2024-43637
HIGH 6.8
Windows USB Video Class System Driver Elevation of Privilege Vulnerability |
|
CVE-2024-43636
HIGH 7.8
Win32k Elevation of Privilege Vulnerability |
|
CVE-2024-43635
HIGH 8.8
Windows Telephony Service Remote Code Execution Vulnerability |
|
CVE-2024-43634
HIGH 6.8
Windows USB Video Class System Driver Elevation of Privilege Vulnerability |
|
CVE-2024-43633
HIGH 6.5
Windows Hyper-V Denial of Service Vulnerability |
|
CVE-2024-43631
HIGH 6.7
Windows Secure Kernel Mode Elevation of Privilege Vulnerability |
|
CVE-2024-43630
HIGH 7.8
Windows Kernel Elevation of Privilege Vulnerability |
|
CVE-2024-43629
HIGH 7.8
Windows DWM Core Library Elevation of Privilege Vulnerability |
|
CVE-2024-43628
HIGH 8.8
Windows Telephony Service Remote Code Execution Vulnerability |
|
CVE-2024-43627
HIGH 8.8
Windows Telephony Service Remote Code Execution Vulnerability |
|
CVE-2024-43626
HIGH 7.8
Windows Telephony Service Elevation of Privilege Vulnerability |
|
CVE-2024-43625
CRITICAL 8.1
Microsoft Windows VMSwitch Elevation of Privilege Vulnerability |
|
CVE-2024-43624
HIGH 8.8
Windows Hyper-V Shared Virtual Disk Elevation of Privilege Vulnerability |
|
CVE-2024-43623
HIGH 7.8
Windows NT OS Kernel Elevation of Privilege Vulnerability |
|
CVE-2024-43622
HIGH 8.8
Windows Telephony Service Remote Code Execution Vulnerability |
|
CVE-2024-43621
HIGH 8.8
Windows Telephony Service Remote Code Execution Vulnerability |
|
CVE-2024-43620
HIGH 8.8
Windows Telephony Service Remote Code Execution Vulnerability |
|
CVE-2024-43530
HIGH 7.8
Windows Update Stack Elevation of Privilege Vulnerability |
|
CVE-2024-43452
HIGH 7.5
Windows Registry Elevation of Privilege Vulnerability |
|
CVE-2024-43451
HIGH 6.5
KEV
NTLM Hash Disclosure Spoofing Vulnerability |
|
CVE-2024-43450
HIGH 7.5
Windows DNS Spoofing Vulnerability |
|
CVE-2024-43449
HIGH 6.8
Windows USB Video Class System Driver Elevation of Privilege Vulnerability |
|
CVE-2024-43447
HIGH 8.1
Windows SMBv3 Server Remote Code Execution Vulnerability |
|
CVE-2024-38264
HIGH 5.9
Microsoft Virtual Hard Disk (VHDX) Denial of Service Vulnerability |
|
CVE-2024-38203
HIGH 6.2
Windows Package Library Manager Information Disclosure Vulnerability |
|
CVE-2024-10468
MEDIUM 5.3
Réseau 1 apps
Potential race conditions in IndexedDB could have caused memory corruption, leading to a potentially exploitable crash. This vulnerability affects Firefox < 13… |
|
CVE-2024-10467
HIGH 8.8
Réseau 1 apps
Memory safety bugs present in Firefox 131, Firefox ESR 128.3, and Thunderbird 128.3. Some of these bugs showed evidence of memory corruption and we presume tha… |
|
CVE-2024-10466
HIGH 7.5
Réseau 1 apps
By sending a specially crafted push message, a remote server could have hung the parent process, causing the browser to become unresponsive. This vulnerability… |
|
CVE-2024-10465
MEDIUM 6.5
Réseau 1 apps
A clipboard "paste" button could persist across tabs which allowed a spoofing attack. This vulnerability affects Firefox < 132, Firefox ESR < 128.4, Thunderbir… |
|
CVE-2024-10464
MEDIUM 6.5
Réseau 1 apps
Repeated writes to history interface attributes could have been used to cause a Denial of Service condition in the browser. This was addressed by introducing r… |