Skip to content
Appaloosa Scout
Language selector
fr en

Public arsenal

Exploits

867 indexed CVEs have a ready-to-use public exploit, 107 of them in the CISA KEV catalog and 326 affecting a tracked app.

CVEs with exploit
867
Exploits catalogued
1,030
In CISA KEV
107
On tracked fleet
326
CVE Severity Apps
CVE-2017-0145 KEV

The SMBv1 server in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2…

HIGH
CVE-2022-0847 KEV

Indexed via Android Security Bulletin — full NVD metadata pending.

HIGH
CVE-2020-0601 KEV

Windows CryptoAPI Spoofing Vulnerability

HIGH
CVE-2017-8759 KEV

.NET Framework Remote Code Execution Vulnerability

HIGH
CVE-2018-8174 KEV

A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka "Windows VBScript…

HIGH
CVE-2016-9079 KEV

A use-after-free vulnerability in SVG Animation has been discovered. An exploit built on this vulnerability has been discovered i…

HIGH 2
CVE-2017-0213 KEV

Windows COM Elevation of Privilege Vulnerability

HIGH
CVE-2016-7200 KEV

The Chakra JavaScript scripting engine in Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of s…

HIGH 1
CVE-2019-0752 KEV

A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer,…

HIGH
CVE-2023-4911 KEV

Microsoft Security Update Guide entry — NVD enrichira.

HIGH
CVE-2016-7255 KEV

Win32k Elevation of Privilege Vulnerability

HIGH
CVE-2025-33073 KEV

Windows SMB Client Elevation of Privilege Vulnerability

HIGH
CVE-2017-0037 KEV

Microsoft Internet Explorer 10 and 11 and Microsoft Edge have a type confusion issue in the Layout::MultiColumnBoxBuilder::Handle…

HIGH 1
CVE-2016-7201 KEV

The Chakra JavaScript scripting engine in Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of s…

HIGH 1
CVE-2019-1458 KEV

An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, a…

HIGH
CVE-2018-8120 KEV

An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, a…

HIGH
CVE-2018-0824 KEV

Microsoft COM for Windows Remote Code Execution Vulnerability

HIGH
CVE-2019-2215 KEV

Indexed via Android Security Bulletin — full NVD metadata pending.

HIGH
CVE-2018-8453 KEV

An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, a…

HIGH
CVE-2016-0185 KEV

Media Center in Microsoft Windows Vista SP2, Windows 7 SP1, and Windows 8.1 allows remote attackers to execute arbitrary code via…

HIGH
CVE-2013-1690 KEV

Mozilla Firefox before 22.0, Firefox ESR 17.x before 17.0.7, Thunderbird before 17.0.7, and Thunderbird ESR 17.x before 17.0.7 do…

HIGH 2
CVE-2019-18426 KEV

A vulnerability in WhatsApp Desktop versions prior to 0.3.9309 when paired with WhatsApp for iPhone versions prior to 2.20.10 all…

HIGH 1
CVE-2016-0151 KEV

The Client-Server Run-time Subsystem (CSRSS) in Microsoft Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windo…

HIGH
CVE-2017-0059 KEV

Microsoft Browser Information Disclosure Vulnerability

HIGH
CVE-2024-21338 KEV

Windows Kernel Elevation of Privilege Vulnerability

HIGH
CVE-2025-24054 KEV

NTLM Hash Disclosure Spoofing Vulnerability

HIGH
CVE-2017-0101 KEV

Windows Transaction Manager Elevation of Privilege Vulnerability

HIGH
CVE-2019-0541 KEV

MSHTML Engine Remote Code Execution Vulnerability

HIGH
CVE-2019-0808 KEV

Win32k Elevation of Privilege Vulnerability

HIGH
CVE-2019-17026 KEV

Incorrect alias information in IonMonkey JIT compiler for setting array elements could lead to a type confusion. We are aware of …

HIGH 2
CVE-2019-0803 KEV

Win32k Elevation of Privilege Vulnerability

HIGH
CVE-2016-3235 KEV

Microsoft Visio 2007 SP3, Visio 2010 SP2, Visio 2013 SP1, Visio 2016, Visio Viewer 2007 SP3, and Visio Viewer 2010 mishandle libr…

HIGH
CVE-2019-0841 KEV

Windows Elevation of Privilege Vulnerability

HIGH
CVE-2023-29336 KEV

Win32k Elevation of Privilege Vulnerability

HIGH
CVE-2019-11707 KEV

A type confusion vulnerability can occur when manipulating JavaScript objects due to issues in Array.pop. This can allow for an e…

HIGH 2
CVE-2025-26633 KEV

Improper neutralization in Microsoft Management Console allows an unauthorized attacker to bypass a security feature locally.

HIGH
CVE-2019-1405 KEV

An elevation of privilege vulnerability exists when the Windows Universal Plug and Play (UPnP) service improperly allows COM obje…

HIGH
CVE-2024-38193 KEV

Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability

HIGH
CVE-2025-30397 KEV

Scripting Engine Memory Corruption Vulnerability

HIGH
CVE-2024-49138 KEV

Windows Common Log File System Driver Elevation of Privilege Vulnerability

HIGH
CVE-2021-3560 KEV

It was found that polkit could be tricked into bypassing the credential checks for D-Bus requests elevating the privileges of the…

HIGH
CVE-2026-2441 KEV

Use after free in CSS in Google Chrome prior to 145.0.7632.75 allowed a remote attacker to execute arbitrary code inside a sandbo…

HIGH 2
CVE-2016-3309 KEV

Windows Kernel Elevation of Privilege Vulnerability

HIGH
CVE-2019-1215 KEV

Windows Elevation of Privilege Vulnerability

HIGH
CVE-2019-1322 KEV

Microsoft Windows Elevation of Privilege Vulnerability

HIGH
CVE-2016-0165 KEV

The kernel-mode driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Se…

HIGH
CVE-2019-1253 KEV

Windows Elevation of Privilege Vulnerability

HIGH
CVE-2017-0263 KEV

Win32k Elevation of Privilege Vulnerability

HIGH
CVE-2025-21333 KEV

Windows Hyper-V NT Kernel Integration VSP Elevation of Privilege Vulnerability

HIGH
CVE-2019-1132 KEV

Win32k Elevation of Privilege Vulnerability

HIGH

Exploits aggregated from ExploitDB, Nuclei, Metasploit and GitHub PoCs, mapped to the CVEs Scout indexes. For defensive research and exposure testing only.