Aller au contenu
Appaloosa Scout
Sélection de la langue
fr en

Vulnérabilités

Vulnérabilités des apps suivies

8 497 entrées

Tri chronologique : du plus récent au plus ancien. Pour prioriser, utilise les filtres KEV / sévérité ci-dessus.

CVE
CVE-2024-21338
HIGH 7.8 KEV Local

Windows Kernel Elevation of Privilege Vulnerability

CVE-2024-21304
MEDIUM 4.1 Local

Trusted Compute Base Elevation of Privilege Vulnerability

CVE-2024-20684
MEDIUM 6.5 Local

Windows Hyper-V Denial of Service Vulnerability

CVE-2024-21353
HIGH 8.8

Microsoft WDAC ODBC Driver Remote Code Execution Vulnerability

CVE-2024-21345
HIGH 8.8

Windows Kernel Elevation of Privilege Vulnerability

CVE-2024-21342
HIGH 7.5

Windows DNS Client Denial of Service Vulnerability

CVE-2023-50387
HIGH

MITRE: CVE-2023-50387 DNSSEC verification complexity can be exploited to exhaust CPU resources and stall DNS resolvers

CVE-2024-23743
LOW 3.3 Local 2 apps

Notion through 3.1.0 on macOS might allow code execution because of RunAsNode and enableNodeClilnspectArguments. NOTE: the vendor states "the attacker must lau…

CVE-2023-40547
HIGH 8.3 Réseau adjacent

A remote code execution vulnerability was found in Shim. The Shim boot support trusts attacker-controlled values when parsing an HTTP response. This flaw allow…

CVE-2024-0755
HIGH 8.8 Réseau 1 apps

Memory safety bugs present in Firefox 121, Firefox ESR 115.6, and Thunderbird 115.6. Some of these bugs showed evidence of memory corruption and we presume tha…

CVE-2024-0753
MEDIUM 6.5 Réseau 1 apps

In specific HSTS configurations an attacker could have bypassed HSTS on a subdomain. This vulnerability affects Firefox < 122, Firefox ESR < 115.7, and Thunder…

CVE-2024-0751
HIGH 8.8 Réseau 1 apps

A malicious devtools extension could have been used to escalate privileges. This vulnerability affects Firefox < 122, Firefox ESR < 115.7, and Thunderbird < 11…

CVE-2024-0750
HIGH 8.8 Réseau 1 apps

A bug in popup notifications delay calculation could have made it possible for an attacker to trick a user into granting permissions. This vulnerability affect…

CVE-2024-0749
MEDIUM 4.3 Réseau 1 apps

A phishing site could have repurposed an `about:` dialog to show phishing content with an incorrect origin in the address bar. This vulnerability affects Firef…

CVE-2024-0747
MEDIUM 6.5 Réseau 1 apps

When a parent page loaded a child in an iframe with `unsafe-inline`, the parent Content Security Policy could have overridden the child Content Security Policy…

CVE-2024-0746
MEDIUM 6.5 Réseau 1 apps

A Linux user opening the print preview dialog could have caused the browser to crash. This vulnerability affects Firefox < 122, Firefox ESR < 115.7, and Thunde…

CVE-2024-0742
MEDIUM 4.3 Réseau 1 apps

It was possible for certain browser prompts and dialogs to be activated or dismissed unintentionally by the user due to an incorrect timestamp used to prevent …

CVE-2024-0741
MEDIUM 6.5 Réseau 1 apps

An out of bounds write in ANGLE could have allowed an attacker to corrupt memory leading to a potentially exploitable crash. This vulnerability affects Firefox…

CVE-2023-49647
HIGH 8.8 Local 1 apps

Improper access control in Zoom Desktop Client for Windows, Zoom VDI Client for Windows, and Zoom SDKs for Windows before version 5.16.10 may allow an authenti…

CVE-2024-21320
HIGH 6.5

Windows Themes Spoofing Vulnerability

CVE-2024-21316
HIGH 6.1

Windows Server Key Distribution Service Security Feature Bypass

CVE-2024-21314
HIGH 6.5

Microsoft Message Queuing Information Disclosure Vulnerability

CVE-2024-21313
HIGH 5.3

Windows TCP/IP Information Disclosure Vulnerability

CVE-2024-21311
HIGH 5.5

Windows Cryptographic Services Information Disclosure Vulnerability

CVE-2024-21310
HIGH 7.8

Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability

CVE-2024-21309
HIGH 7.8

Windows Kernel-Mode Driver Elevation of Privilege Vulnerability

CVE-2024-21307
HIGH 7.5

Remote Desktop Client Remote Code Execution Vulnerability

CVE-2024-21306
HIGH 5.7

Microsoft Bluetooth Driver Spoofing Vulnerability

CVE-2024-21305
HIGH 4.4

Hypervisor-Protected Code Integrity (HVCI) Security Feature Bypass Vulnerability

CVE-2024-20700
CRITICAL 7.5

Windows Hyper-V Remote Code Execution Vulnerability

CVE-2024-20699
HIGH 5.5

Windows Hyper-V Denial of Service Vulnerability

CVE-2024-20698
HIGH 7.8

Windows Kernel Elevation of Privilege Vulnerability

CVE-2024-20697
HIGH 7.3

Windows libarchive Remote Code Execution Vulnerability

CVE-2024-20696
HIGH 7.3

Windows libarchive Remote Code Execution Vulnerability

CVE-2024-20694
HIGH 5.5

Windows CoreMessaging Information Disclosure Vulnerability

CVE-2024-20692
HIGH 5.7

Microsoft Local Security Authority Subsystem Service Information Disclosure Vulnerability

CVE-2024-20691
HIGH 4.7

Windows Themes Information Disclosure Vulnerability

CVE-2024-20690
HIGH 6.5

Windows Nearby Sharing Spoofing Vulnerability

CVE-2024-20687
HIGH 7.5

Microsoft AllJoyn API Denial of Service Vulnerability

CVE-2024-20686
HIGH 7.8

Win32k Elevation of Privilege Vulnerability

CVE-2024-20683
HIGH 7.8

Win32k Elevation of Privilege Vulnerability

CVE-2024-20682
HIGH 7.8

Windows Cryptographic Services Remote Code Execution Vulnerability

CVE-2024-20681
HIGH 7.8

Windows Subsystem for Linux Elevation of Privilege Vulnerability

CVE-2024-20680
HIGH 6.5

Windows Message Queuing Client (MSMQC) Information Disclosure

CVE-2024-20674
CRITICAL 8.8

Windows Kerberos Security Feature Bypass Vulnerability

CVE-2024-20666
HIGH 6.6

BitLocker Security Feature Bypass Vulnerability

CVE-2024-20664
HIGH 6.5

Microsoft Message Queuing Information Disclosure Vulnerability

CVE-2024-20663
HIGH 6.5

Windows Message Queuing Client (MSMQC) Information Disclosure

CVE-2024-20662
HIGH 4.9

Windows Online Certificate Status Protocol (OCSP) Information Disclosure Vulnerability

CVE-2024-20661
HIGH 7.5

Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability