Skip to content
Appaloosa Scout
Language selector
fr en

Vulnerabilities

Tracked app vulnerabilities

8,473 CVEs affect a tracked app or OS (all severities, Windows). 213 of them are in the CISA KEV catalog, meaning exploitation is confirmed.

Matching CVEs
8,473
Actively exploited
213
Publication window
2002-10-04 → 2026-08-19

Chronological sort: newest to oldest. Use the KEV / severity filters above to prioritize.

8,473 entries Windows Clear all
CVE
CVE-2016-3369
HIGH 5.7

Windows IPSec Denial of Service Vulnerability

CVE-2016-3368
HIGH 7.5

Windows Remote Code Execution Vulnerability

CVE-2016-3356
CRITICAL 6.7

GDI+ Remote Code Execution Vulnerability

CVE-2016-3355
HIGH 7.8

Windows GDI Elevation of Privilege Vulnerability

CVE-2016-3354
HIGH 3.3

GDI+ Information Disclosure Vulnerability

CVE-2016-3352
HIGH 6.5

Windows Information Disclosure Vulnerability

CVE-2016-3349
HIGH 7.8

Win32k Elevation of Privilege Vulnerability

CVE-2016-3348
HIGH 7.8

Win32k Elevation of Privilege Vulnerability

CVE-2016-3346
HIGH 7.8

Windows Permissions Enforcement Elevation of Privilege Vulnerability

CVE-2016-3345
HIGH 7.3

Windows SMB Authenticated Remote Code Execution Vulnerability

CVE-2016-3344
HIGH 5.0

Windows Secure Kernel Mode Information Disclosure Vulnerability

CVE-2016-3306
HIGH 7.8

Windows Session Object Elevation of Privilege Vulnerability

CVE-2016-3305
HIGH 7.8

Windows Session Object Elevation of Privilege Vulnerability

CVE-2016-3302
HIGH 7.0

Windows Lock Screen Elevation of Privilege Vulnerability

CVE-2016-5699
MEDIUM 6.1 1 app

CRLF injection vulnerability in the HTTPConnection.putheader function in urllib2 and urllib in CPython (aka Python) before 2.7.10 and 3.x before 3.4.4 allows r…

CVE-2016-5636
CRITICAL 9.8 1 app

Integer overflow in the get_data function in zipimport.c in CPython (aka Python) before 2.7.12, 3.x before 3.4.5, and 3.5.x before 3.5.2 allows remote attacker…

CVE-2016-0772
MEDIUM 6.5 1 app

The smtplib library in CPython (aka Python) before 2.7.12, 3.x before 3.4.5, and 3.5.x before 3.5.2 does not return an error when StartTLS fails, which might a…

CVE-2016-2183
HIGH 7.5 1 app

The DES and Triple DES ciphers, as used in the TLS, SSH, and IPSec protocols and other protocols and products, have a birthday bound of approximately four bill…

CVE-2016-3319
HIGH 7.0

The PDF library in Microsoft Windows 8.1, Windows Server 2012 Gold and R2, Windows 10 Gold and 1511, and Microsoft Edge allows remote attackers to execute arbi…

CVE-2016-3299
MEDIUM 5.3

Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Go…

CVE-2016-3320
HIGH 6.6

Secure Boot Security Feature Bypass Vulnerability

CVE-2016-3312
HIGH 4.3

Universal Outlook Information Disclosure Vulnerability

CVE-2016-3311
HIGH

Windows Kernel Elevation of Privilege Vulnerability

CVE-2016-3310
HIGH

Windows Kernel Elevation of Privilege Vulnerability

CVE-2016-3309
HIGH KEV

Windows Kernel Elevation of Privilege Vulnerability

CVE-2016-3308
HIGH

Windows Kernel Elevation of Privilege Vulnerability

CVE-2016-3301
CRITICAL 8.8

Microsoft Graphics Remote Code Execution Vulnerability

CVE-2016-3237
HIGH 6.4

Kerberos Security Feature Bypass Vulnerability

CVE-2016-3287
HIGH 6.2

Secure Boot Security Feature Bypass Vulnerability

CVE-2016-3286
HIGH 7.8

Windows Kernel Elevation of Privilege Vulnerability

CVE-2016-3272
HIGH 3.1

Windows Kernel Information Disclosure Vulnerability

CVE-2016-3258
HIGH 6.3

Windows File System Security Feature Bypass Vulnerability

CVE-2016-3256
HIGH 3.3

Windows Secure Kernel Mode Information Disclosure Vulnerability

CVE-2016-3254
HIGH 7.8

Windows Kernel Elevation of Privilege Vulnerability

CVE-2016-3252
HIGH 7.8

Windows Kernel Elevation of Privilege Vulnerability

CVE-2016-3251
HIGH 3.3

Windows GDI Information Disclosure Vulnerability

CVE-2016-3250
HIGH 7.8

Windows Kernel Elevation of Privilege Vulnerability

CVE-2016-3249
HIGH 7.8

Windows Graphics Component Elevation of Privilege Vulnerability

CVE-2016-3239
HIGH 7.8

Windows Print Spooler Elevation of Privilege Vulnerability

CVE-2016-3238
CRITICAL 8.8

Windows Print Spooler Remote Code Execution Vulnerability

CVE-2016-4472
HIGH 8.1 1 app

The overflow protection in Expat is removed by compilers with certain optimization settings, which allows remote attackers to cause a denial of service (crash)…

CVE-2016-3189
MEDIUM 6.5 1 app

Use-after-free vulnerability in bzip2recover in bzip2 1.0.6 allows remote attackers to cause a denial of service (crash) via a crafted bzip2 file, related to b…

CVE-2016-3236
CRITICAL 9.8

The Web Proxy Auto Discovery (WPAD) protocol implementation in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Win…

CVE-2016-3231
HIGH 7.8

The Standard Collector service in Windows Diagnostics Hub mishandles library loading, which allows local users to gain privileges via a crafted application, ak…

CVE-2016-3230
MEDIUM 5.0

The Search component in Microsoft Windows 7, Windows Server 2008 R2 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold and …

CVE-2016-3225
HIGH 7.8

The SMB server component in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windo…

CVE-2016-3223
HIGH 8.1

Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Go…

CVE-2016-3221
HIGH 7.8

The kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Window…

CVE-2016-3220
HIGH 7.8

atmfd.dll in the Adobe Type Manager Font Driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server …

CVE-2016-3219
HIGH 7.8

The kernel-mode driver in Microsoft Windows 10 Gold and 1511 allows local users to gain privileges via a crafted application, aka "Win32k Elevation of Privileg…