Aller au contenu
Appaloosa Scout
Sélection de la langue
fr en

Vulnérabilités

Vulnérabilités des apps suivies

8 497 entrées

Tri chronologique : du plus récent au plus ancien. Pour prioriser, utilise les filtres KEV / sévérité ci-dessus.

CVE
CVE-2024-1551
MEDIUM 6.1 Réseau 1 apps

Set-Cookie response headers were being incorrectly honored in multipart HTTP responses. If an attacker could control the Content-Type response header, as well …

CVE-2024-1550
MEDIUM 6.1 Réseau 1 apps

A malicious website could have used a combination of exiting fullscreen mode and `requestPointerLock` to cause the user's mouse to be re-positioned unexpectedl…

CVE-2024-1549
MEDIUM 6.1 Réseau 1 apps

If a website set a large custom cursor, portions of the cursor could have overlapped with the permission dialog, potentially resulting in user confusion and un…

CVE-2024-1548
MEDIUM 4.3 Réseau 1 apps

A website could have obscured the fullscreen notification by using a dropdown select input element. This could have led to user confusion and possible spoofing…

CVE-2024-1547
MEDIUM 6.5 Réseau 1 apps

Through a series of API calls and redirects, an attacker-controlled alert dialog could have been displayed on another website (with the victim website's URL sh…

CVE-2024-1546
HIGH 7.5 Réseau 1 apps

When storing and re-accessing data on a networking channel, the length of buffers may have been confused, resulting in an out-of-bounds memory read. This vulne…

CVE-2024-24699
MEDIUM 6.5 Réseau 4 apps

Business logic error in some Zoom clients may allow an authenticated user to conduct information disclosure via network access.

CVE-2024-24698
MEDIUM 4.9 Réseau 4 apps

Improper authentication in some Zoom clients may allow a privileged user to conduct a disclosure of information via local access.

CVE-2024-24697
HIGH 7.2 Local 1 apps

Untrusted search path in some Zoom 32 bit Windows clients may allow an authenticated user to conduct an escalation of privilege via local access.

CVE-2024-24696
MEDIUM 6.8 Réseau 1 apps

Improper input validation in Zoom Desktop Client for Windows, Zoom VDI Client for Windows, and Zoom Meeting SDK for Windows may allow an authenticated user to …

CVE-2024-24695
MEDIUM 6.8 Réseau 1 apps

Improper input validation in Zoom Desktop Client for Windows, Zoom VDI Client for Windows, and Zoom Meeting SDK for Windows may allow an authenticated user to …

CVE-2024-24691
CRITICAL 9.6 Réseau 1 apps

Improper input validation in Zoom Desktop Client for Windows, Zoom VDI Client for Windows, and Zoom Meeting SDK for Windows may allow an unauthenticated user t…

CVE-2024-24690
MEDIUM 5.4 Réseau 4 apps

Improper input validation in some Zoom clients may allow an authenticated user to conduct a denial of service via network access.

CVE-2024-21420
HIGH 8.8 Réseau

Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability

CVE-2024-21412
HIGH 8.1 KEV Réseau

Internet Shortcut Files Security Feature Bypass Vulnerability

CVE-2024-21406
HIGH 7.5 Réseau

Windows Printing Service Spoofing Vulnerability

CVE-2024-21405
HIGH 7.0 Local

Microsoft Message Queuing (MSMQ) Elevation of Privilege Vulnerability

CVE-2024-21391
HIGH 8.8 Réseau

Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability

CVE-2024-21377
MEDIUM 5.5 Local

Windows DNS Information Disclosure Vulnerability

CVE-2024-21375
HIGH 8.8 Réseau

Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability

CVE-2024-21372
HIGH 8.8 Réseau

Windows OLE Remote Code Execution Vulnerability

CVE-2024-21371
HIGH 7.0 Local

Windows Kernel Elevation of Privilege Vulnerability

CVE-2024-21370
HIGH 8.8 Réseau

Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability

CVE-2024-21369
HIGH 8.8 Réseau

Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability

CVE-2024-21368
HIGH 8.8 Réseau

Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability

CVE-2024-21367
HIGH 8.8 Réseau

Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability

CVE-2024-21366
HIGH 8.8 Réseau

Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability

CVE-2024-21365
HIGH 8.8 Réseau

Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability

CVE-2024-21363
HIGH 7.8 Local

Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability

CVE-2024-21362
MEDIUM 5.5 Local

Windows Kernel Security Feature Bypass Vulnerability

CVE-2024-21361
HIGH 8.8 Réseau

Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability

CVE-2024-21360
HIGH 8.8 Réseau

Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability

CVE-2024-21359
HIGH 8.8 Réseau

Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability

CVE-2024-21358
HIGH 8.8 Réseau

Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability

CVE-2024-21357
HIGH 8.1 Réseau

Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability

CVE-2024-21356
MEDIUM 6.5 Réseau

Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability

CVE-2024-21355
HIGH 7.0 Local

Microsoft Message Queuing (MSMQ) Elevation of Privilege Vulnerability

CVE-2024-21354
HIGH 7.8 Local

Microsoft Message Queuing (MSMQ) Elevation of Privilege Vulnerability

CVE-2024-21352
HIGH 8.8 Réseau

Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability

CVE-2024-21351
HIGH 7.6 KEV Réseau

Windows SmartScreen Security Feature Bypass Vulnerability

CVE-2024-21350
HIGH 8.8 Réseau

Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability

CVE-2024-21349
HIGH 8.8 Réseau

Microsoft ActiveX Data Objects Remote Code Execution Vulnerability

CVE-2024-21348
HIGH 7.5 Réseau

Internet Connection Sharing (ICS) Denial of Service Vulnerability

CVE-2024-21347
HIGH 7.5 Réseau

Microsoft ODBC Driver Remote Code Execution Vulnerability

CVE-2024-21346
HIGH 7.8 Local

Win32k Elevation of Privilege Vulnerability

CVE-2024-21344
MEDIUM 5.9 Réseau

Windows Network Address Translation (NAT) Denial of Service Vulnerability

CVE-2024-21343
MEDIUM 5.9 Réseau

Windows Network Address Translation (NAT) Denial of Service Vulnerability

CVE-2024-21341
MEDIUM 6.8 Physique

Windows Kernel Remote Code Execution Vulnerability

CVE-2024-21340
MEDIUM 4.6 Physique

Windows Kernel Information Disclosure Vulnerability

CVE-2024-21339
MEDIUM 6.4 Physique

Windows USB Generic Parent Driver Remote Code Execution Vulnerability