Aller au contenu
Appaloosa Scout
Sélection de la langue
fr en

Vulnérabilités

Vulnérabilités des apps suivies

11 309 entrées

Tri chronologique : du plus récent au plus ancien. Pour prioriser, utilise les filtres KEV / sévérité ci-dessus.

CVE
CVE-2023-32009
HIGH 8.8

Windows Collaborative Translation Framework Elevation of Privilege Vulnerability

CVE-2023-32008
HIGH 7.8

Windows Resilient File System (ReFS) Remote Code Execution Vulnerability

CVE-2023-29373
HIGH 8.8

Microsoft ODBC Driver Remote Code Execution Vulnerability

CVE-2023-29372
HIGH 8.8

Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability

CVE-2023-29371
HIGH 7.8

Windows GDI Elevation of Privilege Vulnerability

CVE-2023-29370
HIGH 7.8

Windows Media Remote Code Execution Vulnerability

CVE-2023-29369
HIGH 6.5

Remote Procedure Call Runtime Denial of Service Vulnerability

CVE-2023-29368
HIGH 7.0

Windows Filtering Platform Elevation of Privilege Vulnerability

CVE-2023-29367
HIGH 7.8

iSCSI Target WMI Provider Remote Code Execution Vulnerability

CVE-2023-29366
HIGH 7.8

Windows Geolocation Service Remote Code Execution Vulnerability

CVE-2023-29365
HIGH 7.8

Windows Media Remote Code Execution Vulnerability

CVE-2023-29364
HIGH 7.0

Windows Authentication Elevation of Privilege Vulnerability

CVE-2023-29362
HIGH 8.8

Remote Desktop Client Remote Code Execution Vulnerability

CVE-2023-29361
HIGH 7.0

Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability

CVE-2023-29360
HIGH 8.4 KEV

Microsoft Streaming Service Elevation of Privilege Vulnerability

CVE-2023-29359
HIGH 7.8

GDI Elevation of Privilege Vulnerability

CVE-2023-29358
HIGH 7.8

Windows GDI Elevation of Privilege Vulnerability

CVE-2023-29355
HIGH 5.3

DHCP Server Service Information Disclosure Vulnerability

CVE-2023-29352
HIGH 6.5

Windows Remote Desktop Security Feature Bypass Vulnerability

CVE-2023-29351
HIGH 8.1

Windows Group Policy Elevation of Privilege Vulnerability

CVE-2023-29346
HIGH 7.8

NTFS Elevation of Privilege Vulnerability

CVE-2023-24938
HIGH 6.5

Windows CryptoAPI Denial of Service Vulnerability

CVE-2023-24937
HIGH 6.5

Windows CryptoAPI Denial of Service Vulnerability

CVE-2023-32215
HIGH 8.8 Réseau 1 apps

Mozilla developers and community members Gabriele Svelto, Andrew Osmond, Emily McDonough, Sebastian Hengst, Andrew McCreight and the Mozilla Fuzzing Team repor…

CVE-2023-32213
HIGH 8.8 Réseau 1 apps

When reading a file, an uninitialized value could have been used as read limit. This vulnerability affects Firefox < 113, Firefox ESR < 102.11, and Thunderbird…

CVE-2023-32207
HIGH 8.8 Réseau 1 apps

A missing delay in popup notifications could have made it possible for an attacker to trick a user into granting permissions. This vulnerability affects Firefo…

CVE-2023-29550
HIGH 8.8 Réseau 1 apps

Memory safety bugs present in Firefox 111 and Firefox ESR 102.9. Some of these bugs showed evidence of memory corruption and we presume that with enough effort…

CVE-2023-29543
HIGH 8.8 Réseau 1 apps

An attacker could have caused memory corruption and a potentially exploitable use-after-free of a pointer in a global object's debugger vector. This vulnerabil…

CVE-2023-29539
HIGH 8.8 Réseau 1 apps

When handling the filename directive in the Content-Disposition header, the filename would be truncated if the filename contained a NULL character. This could …

CVE-2023-29537
HIGH 7.5 Réseau 1 apps

Multiple race conditions in the font initialization could have led to memory corruption and execution of attacker-controlled code. This vulnerability affects F…

CVE-2023-29536
HIGH 8.8 Réseau 1 apps

An attacker could cause the memory manager to incorrectly free a pointer that addresses attacker-controlled memory, resulting in an assertion, memory corruptio…

CVE-2023-28176
HIGH 8.8 Réseau 1 apps

Memory safety bugs present in Firefox 110 and Firefox ESR 102.8. Some of these bugs showed evidence of memory corruption and we presume that with enough effort…

CVE-2023-28162
HIGH 8.8 Réseau 1 apps

While implementing AudioWorklets, some code may have casted one type to another, invalid, dynamic type. This could have led to a potentially exploitable crash.…

CVE-2023-25746
HIGH 8.8 Réseau 1 apps

Memory safety bugs present in Firefox ESR 102.7. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these c…

CVE-2023-25739
HIGH 8.8 Réseau 1 apps

Module load requests that failed were not being checked as to whether or not they were cancelled causing a use-after-free in <code>ScriptLoadContext</code>. Th…

CVE-2023-25737
HIGH 8.8 Réseau 1 apps

An invalid downcast from <code>nsTextNode</code> to <code>SVGElement</code> could have lead to undefined behavior. This vulnerability affects Firefox < 110, Th…

CVE-2023-25735
HIGH 8.8 Réseau 1 apps

Cross-compartment wrappers wrapping a scripted proxy could have caused objects from other compartments to be stored in the main compartment resulting in a use-…

CVE-2023-25734
HIGH 8.1 Réseau 1 apps

After downloading a Windows <code>.url</code> shortcut from the local filesystem, an attacker could supply a remote path that would lead to unexpected network …

CVE-2023-25732
HIGH 8.8 Réseau 1 apps

When encoding data from an <code>inputStream</code> in <code>xpcom</code> the size of the input being encoded was not correctly calculated potentially leading …

CVE-2023-25729
HIGH 8.8 Réseau 1 apps

Permission prompts for opening external schemes were only shown for <code>ContentPrincipals</code> resulting in extensions being able to open them without user…

CVE-2023-23605
HIGH 8.8 Réseau 1 apps

Mozilla developers and the Mozilla Fuzzing Team reported memory safety bugs present in Firefox 108 and Firefox ESR 102.6. Some of these bugs showed evidence of…

CVE-2023-0767
HIGH 8.8 Réseau 1 apps

An attacker could construct a PKCS 12 cert bundle in such a way that could allow for arbitrary memory writes via PKCS 12 Safe Bag attributes being mishandled. …

CVE-2023-21670
HIGH

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2023-21669
HIGH

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2023-21661
HIGH

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2023-21659
HIGH

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2023-21658
HIGH

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2023-21657
HIGH

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2023-21656
HIGH

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2023-21628
HIGH

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.