Aller au contenu
Appaloosa Scout

Vulnérabilités

Vulnérabilités des apps suivies

845 entrées

Tri chronologique : du plus récent au plus ancien. Pour prioriser, utilise les filtres KEV / sévérité ci-dessus.

CVE
CVE-2023-29363
CRITICAL 9.8

Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability

CVE-2023-29325
CRITICAL 8.1

Windows OLE Remote Code Execution Vulnerability

CVE-2023-28283
CRITICAL 8.1

Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability

CVE-2023-24943
CRITICAL 9.8

Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability

CVE-2023-24941
CRITICAL 9.8

Windows Network File System Remote Code Execution Vulnerability

CVE-2023-24903
CRITICAL 8.1

Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability

CVE-2023-28250
CRITICAL 9.8

Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability

CVE-2023-28232
CRITICAL 7.5

Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability

CVE-2023-28231
CRITICAL 8.8

DHCP Server Service Remote Code Execution Vulnerability

CVE-2023-28220
CRITICAL 8.1

Layer 2 Tunneling Protocol Remote Code Execution Vulnerability

CVE-2023-28219
CRITICAL 8.1

Layer 2 Tunneling Protocol Remote Code Execution Vulnerability

CVE-2023-21554
CRITICAL 9.8

Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability

CVE-2023-23416
CRITICAL 7.8

Windows Cryptographic Services Remote Code Execution Vulnerability

CVE-2023-23415
CRITICAL 9.8

Internet Control Message Protocol (ICMP) Remote Code Execution Vulnerability

CVE-2023-23411
CRITICAL 6.5

Windows Hyper-V Denial of Service Vulnerability

CVE-2023-23404
CRITICAL 8.1

Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability

CVE-2023-23392
CRITICAL 9.8

HTTP Protocol Stack Remote Code Execution Vulnerability

CVE-2023-21708
CRITICAL 9.8

Remote Procedure Call Runtime Remote Code Execution Vulnerability

CVE-2023-1018
CRITICAL 8.8

CERT/CC: CVE-2023-1018 TPM2.0 Module Library Elevation of Privilege Vulnerability

CVE-2023-1017
CRITICAL 8.8

CERT/CC: CVE-2023-1017 TPM2.0 Module Library Elevation of Privilege Vulnerability

CVE-2021-43529
CRITICAL 9.8 Réseau 1 apps

Thunderbird versions prior to 91.3.0 are vulnerable to the heap overflow described in CVE-2021-43527 when processing S/MIME messages. Thunderbird versions 91.3…

CVE-2023-21803
CRITICAL 9.8

Windows iSCSI Discovery Service Remote Code Execution Vulnerability

CVE-2023-21692
CRITICAL 9.8

Microsoft Protected Extensible Authentication Protocol (PEAP) Remote Code Execution Vulnerability

CVE-2023-21690
CRITICAL 9.8

Microsoft Protected Extensible Authentication Protocol (PEAP) Remote Code Execution Vulnerability

CVE-2023-21689
CRITICAL 9.8

Microsoft Protected Extensible Authentication Protocol (PEAP) Remote Code Execution Vulnerability

CVE-2022-41903
CRITICAL 9.8 Réseau 1 apps

Git is distributed revision control system. `git log` can display commits in an arbitrary format using its `--format` specifiers. This functionality is also ex…

CVE-2023-21730
CRITICAL 7.8

Microsoft Cryptographic Services Elevation of Privilege Vulnerability

CVE-2023-21712
CRITICAL 8.1

Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability

CVE-2023-21679
CRITICAL 8.1

Windows Layer 2 Tunneling Protocol (L2TP) Remote Code Execution Vulnerability

CVE-2023-21561
CRITICAL 7.8

Microsoft Cryptographic Services Elevation of Privilege Vulnerability

CVE-2023-21556
CRITICAL 8.1

Windows Layer 2 Tunneling Protocol (L2TP) Remote Code Execution Vulnerability

CVE-2023-21555
CRITICAL 8.1

Windows Layer 2 Tunneling Protocol (L2TP) Remote Code Execution Vulnerability

CVE-2023-21551
CRITICAL 7.8

Microsoft Cryptographic Services Elevation of Privilege Vulnerability

CVE-2023-21548
CRITICAL 8.1

Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability

CVE-2023-21546
CRITICAL 8.1

Windows Layer 2 Tunneling Protocol (L2TP) Remote Code Execution Vulnerability

CVE-2023-21543
CRITICAL 8.1

Windows Layer 2 Tunneling Protocol (L2TP) Remote Code Execution Vulnerability

CVE-2023-21535
CRITICAL 8.1

Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability

CVE-2022-46882
CRITICAL 9.8 Réseau 1 apps

A use-after-free in WebGL extensions could have led to a potentially exploitable crash. This vulnerability affects Firefox < 107, Firefox ESR < 102.6, and Thun…

CVE-2022-45406
CRITICAL 9.8 Réseau 1 apps

If an out-of-memory condition occurred when creating a JavaScript global, a JavaScript realm may be deleted while references to it lived on in a BaseShape. Thi…

CVE-2022-34470
CRITICAL 9.8 Réseau 1 apps

Session history navigations may have led to a use-after-free and potentially exploitable crash. This vulnerability affects Firefox < 102, Firefox ESR < 91.11, …

CVE-2022-31747
CRITICAL 9.8 Réseau 1 apps

Mozilla developers Andrew McCreight, Nicolas B. Pierron, and the Mozilla Fuzzing Team reported memory safety bugs present in Firefox 100 and Firefox ESR 91.9. …

CVE-2022-31737
CRITICAL 9.8 Réseau 1 apps

A malicious webpage could have caused an out-of-bounds write in WebGL, leading to memory corruption and a potentially exploitable crash. This vulnerability aff…

CVE-2022-31736
CRITICAL 9.8 Réseau 1 apps

A malicious website could have learned the size of a cross-origin resource that supported Range requests. This vulnerability affects Thunderbird < 91.10, Firef…

CVE-2022-29917
CRITICAL 9.8 Réseau 1 apps

Mozilla developers Andrew McCreight, Gabriele Svelto, Tom Ritter and the Mozilla Fuzzing Team reported memory safety bugs present in Firefox 99 and Firefox ESR…

CVE-2022-26384
CRITICAL 9.6 Réseau 1 apps

If an attacker could control the contents of an iframe sandboxed with <code>allow-popups</code> but not <code>allow-scripts</code>, they were able to craft a l…

CVE-2022-22759
CRITICAL 9.6 Réseau 1 apps

If a document created a sandboxed iframe without <code>allow-scripts</code>, and subsequently appended an element to the iframe's document that e.g. had a Java…

CVE-2021-4140
CRITICAL 10.0 Réseau 1 apps

It was possible to construct specific XSLT markup that would be able to bypass an iframe sandbox. This vulnerability affects Firefox ESR < 91.5, Firefox < 96, …

CVE-2021-4129
CRITICAL 9.8 Réseau 1 apps

Mozilla developers and community members Julian Hector, Randell Jesup, Gabriele Svelto, Tyson Smith, Christian Holler, and Masayuki Nakano reported memory safe…

CVE-2021-4127
CRITICAL 9.8 Réseau 1 apps

An out of date graphics library (Angle) likely contained vulnerabilities that could potentially be exploited. This vulnerability affects Thunderbird < 78.9 and…

CVE-2022-44676
CRITICAL 8.1

Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability