Vulnérabilités
Vulnérabilités des apps suivies
8 497 entrées
Tri chronologique : du plus récent au plus ancien. Pour prioriser, utilise les filtres KEV / sévérité ci-dessus.
| CVE |
|---|
|
CVE-2024-2609
MEDIUM 6.1
Réseau 1 apps
The permission prompt input delay could expire while the window is not in focus. This makes it vulnerable to clickjacking by malicious websites. This vulnerabi… |
|
CVE-2024-2608
HIGH 8.4
Local 1 apps
`AppendEncodedAttributeValue(), ExtraSpaceNeededForAttrEncoding()` and `AppendEncodedCharacters()` could have experienced integer overflows, causing underalloc… |
|
CVE-2024-2607
HIGH 8.1
Réseau 1 apps
Return registers were overwritten which could have allowed an attacker to execute arbitrary code. *Note:* This issue only affected Armv7-A systems. Other opera… |
|
CVE-2024-2605
MEDIUM 5.9
Réseau 1 apps
An attacker could have leveraged the Windows Error Reporter to run arbitrary code on the system escaping the sandbox. *Note:* This issue only affected Windows … |
|
CVE-2023-5388
MEDIUM 6.5
Réseau 1 apps
NSS was susceptible to a timing side-channel attack when performing RSA decryption. This attack could potentially allow an attacker to recover the private data… |
|
CVE-2023-42938
HIGH 7.8
Local 1 apps
A logic issue was addressed with improved checks. This issue is fixed in iTunes 12.13.1 for Windows. A local attacker may be able to elevate their privileges. |
|
CVE-2024-26197
HIGH 6.5
Windows Standards-Based Storage Management Service Denial of Service Vulnerability |
|
CVE-2024-26190
HIGH 7.5
Microsoft QUIC Denial of Service Vulnerability |
|
CVE-2024-26185
HIGH 6.5
Windows Compressed Folder Tampering Vulnerability |
|
CVE-2024-26182
HIGH 7.8
Windows Kernel Elevation of Privilege Vulnerability |
|
CVE-2024-26181
HIGH 5.5
Windows Kernel Denial of Service Vulnerability |
|
CVE-2024-26178
HIGH 7.8
Windows Kernel Elevation of Privilege Vulnerability |
|
CVE-2024-26177
HIGH 5.5
Windows Kernel Information Disclosure Vulnerability |
|
CVE-2024-26176
HIGH 7.8
Windows Kernel Elevation of Privilege Vulnerability |
|
CVE-2024-26174
HIGH 5.5
Windows Kernel Information Disclosure Vulnerability |
|
CVE-2024-26173
HIGH 7.8
Windows Kernel Elevation of Privilege Vulnerability |
|
CVE-2024-26170
HIGH 7.8
Windows Composite Image File System (CimFS) Elevation of Privilege Vulnerability |
|
CVE-2024-26169
HIGH 7.8
KEV
Windows Error Reporting Service Elevation of Privilege Vulnerability |
|
CVE-2024-26166
HIGH 8.8
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |
|
CVE-2024-26162
HIGH 8.8
Microsoft ODBC Driver Remote Code Execution Vulnerability |
|
CVE-2024-26161
HIGH 8.8
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |
|
CVE-2024-26160
HIGH 5.5
Windows Cloud Files Mini Filter Driver Information Disclosure Vulnerability |
|
CVE-2024-26159
HIGH 8.8
Microsoft ODBC Driver Remote Code Execution Vulnerability |
|
CVE-2024-21451
HIGH 8.8
Microsoft ODBC Driver Remote Code Execution Vulnerability |
|
CVE-2024-21450
HIGH 8.8
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |
|
CVE-2024-21446
HIGH 7.8
NTFS Elevation of Privilege Vulnerability |
|
CVE-2024-21445
HIGH 7.0
Windows USB Print Driver Elevation of Privilege Vulnerability |
|
CVE-2024-21444
HIGH 8.8
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |
|
CVE-2024-21443
HIGH 7.3
Windows Kernel Elevation of Privilege Vulnerability |
|
CVE-2024-21442
HIGH 7.8
Windows USB Print Driver Elevation of Privilege Vulnerability |
|
CVE-2024-21441
HIGH 8.8
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |
|
CVE-2024-21440
HIGH 8.8
Microsoft ODBC Driver Remote Code Execution Vulnerability |
|
CVE-2024-21439
HIGH 7.0
Windows Telephony Server Elevation of Privilege Vulnerability |
|
CVE-2024-21438
HIGH 7.5
Microsoft AllJoyn API Denial of Service Vulnerability |
|
CVE-2024-21437
HIGH 7.8
Windows Graphics Component Elevation of Privilege Vulnerability |
|
CVE-2024-21436
HIGH 7.8
Windows Installer Elevation of Privilege Vulnerability |
|
CVE-2024-21435
HIGH 8.8
Windows OLE Remote Code Execution Vulnerability |
|
CVE-2024-21434
HIGH 7.8
Microsoft Windows SCSI Class System File Elevation of Privilege Vulnerability |
|
CVE-2024-21433
HIGH 7.0
Windows Print Spooler Elevation of Privilege Vulnerability |
|
CVE-2024-21432
HIGH 7.0
Windows Update Stack Elevation of Privilege Vulnerability |
|
CVE-2024-21431
HIGH 7.8
Hypervisor-Protected Code Integrity (HVCI) Security Feature Bypass Vulnerability |
|
CVE-2024-21430
HIGH 5.7
Windows USB Attached SCSI (UAS) Protocol Remote Code Execution Vulnerability |
|
CVE-2024-21429
HIGH 6.8
Windows USB Hub Driver Remote Code Execution Vulnerability |
|
CVE-2024-21427
HIGH 7.5
Windows Kerberos Security Feature Bypass Vulnerability |
|
CVE-2024-21408
CRITICAL 5.5
Windows Hyper-V Denial of Service Vulnerability |
|
CVE-2024-21407
CRITICAL 8.1
Windows Hyper-V Remote Code Execution Vulnerability |
|
CVE-2023-28746
HIGH
Intel: CVE-2023-28746 Register File Data Sampling (RFDS) |
|
CVE-2024-1936
HIGH 7.5
Réseau 1 apps
The encrypted subject of an email message could be incorrectly and permanently assigned to an arbitrary other email message in Thunderbird's local cache. Conse… |
|
CVE-2024-1553
HIGH 8.1
Réseau 1 apps
Memory safety bugs present in Firefox 122, Firefox ESR 115.7, and Thunderbird 115.7. Some of these bugs showed evidence of memory corruption and we presume tha… |
|
CVE-2024-1552
HIGH 7.5
Réseau 1 apps
Incorrect code generation could have led to unexpected numeric conversions and potential undefined behavior.*Note:* This issue only affects 32-bit ARM devices.… |