Skip to content
Appaloosa Scout
Language selector
fr en

Public arsenal

Exploits

867 indexed CVEs have a ready-to-use public exploit, 107 of them in the CISA KEV catalog and 326 affecting a tracked app.

CVEs with exploit
867
Exploits catalogued
1,030
In CISA KEV
107
On tracked fleet
326
CVE Severity Apps
CVE-2017-11890

Scripting Engine Memory Corruption Vulnerability

CRITICAL
CVE-2017-8682

Win32k Graphics Remote Code Execution Vulnerability

CRITICAL
CVE-2017-11793

Scripting Engine Memory Corruption Vulnerability

CRITICAL
CVE-2017-11855

Internet Explorer Memory Corruption Vulnerability

CRITICAL
CVE-2017-8541

Microsoft Malware Protection Engine Remote Code Execution Vulnerability

CRITICAL
CVE-2018-8544

Windows VBScript Engine Remote Code Execution Vulnerability

CRITICAL
CVE-2017-11903

Scripting Engine Memory Corruption Vulnerability

CRITICAL
CVE-2017-0202

Internet Explorer Memory Corruption Vulnerability

CRITICAL
CVE-2016-3301

Microsoft Graphics Remote Code Execution Vulnerability

CRITICAL
CVE-2017-8558

Microsoft Malware Protection Engine Remote Code Execution Vulnerability

CRITICAL
CVE-2010-1205

Buffer overflow in pngpread.c in libpng before 1.2.44 and 1.4.x before 1.4.3, as used in progressive applications, might allow re…

CRITICAL 7
CVE-2017-0072

Windows Uniscribe Remote Code Execution Vulnerability

CRITICAL
CVE-2017-0083

Windows Uniscribe Remote Code Execution Vulnerability

CRITICAL
CVE-2017-0086

Windows Uniscribe Remote Code Execution Vulnerability

CRITICAL
CVE-2017-0087

Windows Uniscribe Remote Code Execution Vulnerability

CRITICAL
CVE-2017-0090

Windows Uniscribe Remote Code Execution Vulnerability

CRITICAL
CVE-2016-7274

Windows Uniscribe Remote Code Execution Vulnerability

CRITICAL
CVE-2017-0088

Windows Uniscribe Remote Code Execution Vulnerability

CRITICAL
CVE-2017-0283

Windows Uniscribe Remote Code Execution Vulnerability

CRITICAL
CVE-2024-0132

NVIDIA: CVE-2024-0132 Container Toolkit 1.16.1 and Earlier Time-of-check Time-of Use Vulnerability

CRITICAL
CVE-2017-0084

Windows Uniscribe Remote Code Execution Vulnerability

CRITICAL
CVE-2017-5375

JIT code allocation can allow for a bypass of ASLR and DEP protections leading to potential memory corruption attacks. This vulne…

CRITICAL 2
CVE-2019-0667

Windows VBScript Engine Remote Code Execution Vulnerability

CRITICAL
CVE-2017-0561

Indexed via Android Security Bulletin — full NVD metadata pending.

CRITICAL
CVE-2019-1150

Microsoft Graphics Remote Code Execution Vulnerability

CRITICAL
CVE-2014-4650

The CGIHTTPServer module in Python 2.7.5 and 3.3.4 does not properly handle URLs in which URL encoding is used for path separator…

CRITICAL 3
CVE-2017-0781

Indexed via Android Security Bulletin — full NVD metadata pending.

CRITICAL
CVE-2016-9899

Use-after-free while manipulating DOM events and removing audio elements due to errors in the handling of node adoption. This vul…

CRITICAL 2
CVE-2018-5159

An integer overflow can occur in the Skia library due to 32-bit integer use in an array without integer overflow checks, resultin…

CRITICAL 2
CVE-2019-9791

The type inference system allows the compilation of functions that can cause type confusions between arbitrary objects when compi…

CRITICAL 2
CVE-2017-5465

An out-of-bounds read while processing SVG content in "ConvolvePixel". This results in a crash and also allows for otherwise inac…

CRITICAL 2
CVE-2017-0160

.NET Framework Remote Code Execution Vulnerability

CRITICAL
CVE-2025-24085 KEV

A use after free issue was addressed with improved memory management. This issue is fixed in iOS 18.3 and iPadOS 18.3, iPadOS 17.…

CRITICAL
CVE-2017-5447

An out-of-bounds read during the processing of glyph widths during text layout. This results in a potentially exploitable crash a…

CRITICAL 2
CVE-2017-5404

A use-after-free error can occur when manipulating ranges in selections with one node inside a native anonymous tree and one node…

CRITICAL 2
CVE-2019-1151

Microsoft Graphics Remote Code Execution Vulnerability

CRITICAL
CVE-2019-1149

Microsoft Graphics Remote Code Execution Vulnerability

CRITICAL
CVE-2019-9792

The IonMonkey just-in-time (JIT) compiler can leak an internal JS_OPTIMIZED_OUT magic value to the running script during a bailou…

CRITICAL 2
CVE-2019-1144

Microsoft Graphics Remote Code Execution Vulnerability

CRITICAL
CVE-2019-1145

Microsoft Graphics Remote Code Execution Vulnerability

CRITICAL
CVE-2019-1152

Microsoft Graphics Remote Code Execution Vulnerability

CRITICAL
CVE-2016-7567

Microsoft Security Update Guide entry — NVD enrichira.

CRITICAL
CVE-2019-11703

A flaw in Thunderbird's implementation of iCal causes a heap buffer overflow in parser_get_next_char when processing certain emai…

CRITICAL 1
CVE-2019-11704

A flaw in Thunderbird's implementation of iCal causes a heap buffer overflow in icalmemory_strdup_and_dequote when processing cer…

CRITICAL 1
CVE-2019-11705

A flaw in Thunderbird's implementation of iCal causes a stack buffer overflow in icalrecur_add_bydayrules when processing certain…

CRITICAL 1
CVE-2016-3861

Indexed via Android Security Bulletin — full NVD metadata pending.

CRITICAL
CVE-2016-10277

Indexed via Android Security Bulletin — full NVD metadata pending.

CRITICAL
CVE-2017-11120

Indexed via Android Security Bulletin — full NVD metadata pending.

CRITICAL
CVE-2019-2107

Indexed via Android Security Bulletin — full NVD metadata pending.

CRITICAL
CVE-2016-6256

SAP Business One for Android 1.2.3 allows remote attackers to conduct XML External Entity (XXE) attacks via crafted XML data in a…

CRITICAL

Exploits aggregated from ExploitDB, Nuclei, Metasploit and GitHub PoCs, mapped to the CVEs Scout indexes. For defensive research and exposure testing only.