Arsenal public
Exploits
867 CVE indexées ont un exploit public prêt à l'emploi, dont 107 au KEV CISA et 326 touchant une app suivie.
- CVE avec exploit
- 867
- Exploits recensés
- 1 030
- Au KEV CISA
- 107
- Sur le parc suivi
- 326
| CVE | Sévérité | Sources | EPSS | Apps |
|---|---|---|---|---|
|
CVE-2017-11890
Scripting Engine Memory Corruption Vulnerability |
CRITICAL | ExploitDB | 50% | — |
|
CVE-2017-8682
Win32k Graphics Remote Code Execution Vulnerability |
CRITICAL | ExploitDB | 50% | |
|
CVE-2017-11793
Scripting Engine Memory Corruption Vulnerability |
CRITICAL | ExploitDB | 50% | — |
|
CVE-2017-11855
Internet Explorer Memory Corruption Vulnerability |
CRITICAL | ExploitDB | 49% | — |
|
CVE-2017-8541
Microsoft Malware Protection Engine Remote Code Execution Vulnerability |
CRITICAL | ExploitDB | 48% | — |
|
CVE-2018-8544
Windows VBScript Engine Remote Code Execution Vulnerability |
CRITICAL | ExploitDB | 48% | |
|
CVE-2017-11903
Scripting Engine Memory Corruption Vulnerability |
CRITICAL | ExploitDB | 47% | — |
|
CVE-2017-0202
Internet Explorer Memory Corruption Vulnerability |
CRITICAL | ExploitDB | 46% | — |
|
CVE-2016-3301
Microsoft Graphics Remote Code Execution Vulnerability |
CRITICAL | ExploitDB | 44% | |
|
CVE-2017-8558
Microsoft Malware Protection Engine Remote Code Execution Vulnerability |
CRITICAL | ExploitDB | 44% | — |
|
CVE-2010-1205
Buffer overflow in pngpread.c in libpng before 1.2.44 and 1.4.x before 1.4.3, as used in progressive applications, might allow re… |
CRITICAL | ExploitDB | 43% | |
|
CVE-2017-0072
Windows Uniscribe Remote Code Execution Vulnerability |
CRITICAL | ExploitDB | 43% | — |
|
CVE-2017-0083
Windows Uniscribe Remote Code Execution Vulnerability |
CRITICAL | ExploitDB | 43% | — |
|
CVE-2017-0086
Windows Uniscribe Remote Code Execution Vulnerability |
CRITICAL | ExploitDB | 43% | — |
|
CVE-2017-0087
Windows Uniscribe Remote Code Execution Vulnerability |
CRITICAL | ExploitDB | 43% | — |
|
CVE-2017-0090
Windows Uniscribe Remote Code Execution Vulnerability |
CRITICAL | ExploitDB | 43% | — |
|
CVE-2016-7274
Windows Uniscribe Remote Code Execution Vulnerability |
CRITICAL | ExploitDB | 42% | |
|
CVE-2017-0088
Windows Uniscribe Remote Code Execution Vulnerability |
CRITICAL | ExploitDB | 42% | — |
|
CVE-2017-0283
Windows Uniscribe Remote Code Execution Vulnerability |
CRITICAL | ExploitDB | 39% | |
|
CVE-2024-0132
NVIDIA: CVE-2024-0132 Container Toolkit 1.16.1 and Earlier Time-of-check Time-of Use Vulnerability |
CRITICAL | ExploitDB | 39% | — |
|
CVE-2017-0084
Windows Uniscribe Remote Code Execution Vulnerability |
CRITICAL | ExploitDB | 37% | |
|
CVE-2017-5375
JIT code allocation can allow for a bypass of ASLR and DEP protections leading to potential memory corruption attacks. This vulne… |
CRITICAL | ExploitDB | 34% | |
|
CVE-2019-0667
Windows VBScript Engine Remote Code Execution Vulnerability |
CRITICAL | ExploitDB | 31% | — |
|
CVE-2017-0561
Indexed via Android Security Bulletin — full NVD metadata pending. |
CRITICAL | ExploitDB | 30% | |
|
CVE-2019-1150
Microsoft Graphics Remote Code Execution Vulnerability |
CRITICAL | ExploitDB | 29% | |
|
CVE-2014-4650
The CGIHTTPServer module in Python 2.7.5 and 3.3.4 does not properly handle URLs in which URL encoding is used for path separator… |
CRITICAL | ExploitDB | 25% | |
|
CVE-2017-0781
Indexed via Android Security Bulletin — full NVD metadata pending. |
CRITICAL | ExploitDB | 23% | |
|
CVE-2016-9899
Use-after-free while manipulating DOM events and removing audio elements due to errors in the handling of node adoption. This vul… |
CRITICAL | ExploitDB | 21% | |
|
CVE-2018-5159
An integer overflow can occur in the Skia library due to 32-bit integer use in an array without integer overflow checks, resultin… |
CRITICAL | ExploitDB | 21% | |
|
CVE-2019-9791
The type inference system allows the compilation of functions that can cause type confusions between arbitrary objects when compi… |
CRITICAL | ExploitDB | 20% | |
|
CVE-2017-5465
An out-of-bounds read while processing SVG content in "ConvolvePixel". This results in a crash and also allows for otherwise inac… |
CRITICAL | ExploitDB | 19% | |
|
CVE-2017-0160
.NET Framework Remote Code Execution Vulnerability |
CRITICAL | ExploitDB | 18% | — |
|
CVE-2025-24085
KEV A use after free issue was addressed with improved memory management. This issue is fixed in iOS 18.3 and iPadOS 18.3, iPadOS 17.… |
CRITICAL | ExploitDB | 18% | |
|
CVE-2017-5447
An out-of-bounds read during the processing of glyph widths during text layout. This results in a potentially exploitable crash a… |
CRITICAL | ExploitDB | 17% | |
|
CVE-2017-5404
A use-after-free error can occur when manipulating ranges in selections with one node inside a native anonymous tree and one node… |
CRITICAL | ExploitDB | 17% | |
|
CVE-2019-1151
Microsoft Graphics Remote Code Execution Vulnerability |
CRITICAL | ExploitDB | 15% | |
|
CVE-2019-1149
Microsoft Graphics Remote Code Execution Vulnerability |
CRITICAL | ExploitDB | 14% | |
|
CVE-2019-9792
The IonMonkey just-in-time (JIT) compiler can leak an internal JS_OPTIMIZED_OUT magic value to the running script during a bailou… |
CRITICAL | ExploitDB | 13% | |
|
CVE-2019-1144
Microsoft Graphics Remote Code Execution Vulnerability |
CRITICAL | ExploitDB | 13% | |
|
CVE-2019-1145
Microsoft Graphics Remote Code Execution Vulnerability |
CRITICAL | ExploitDB | 13% | |
|
CVE-2019-1152
Microsoft Graphics Remote Code Execution Vulnerability |
CRITICAL | ExploitDB | 13% | |
|
CVE-2016-7567
Microsoft Security Update Guide entry — NVD enrichira. |
CRITICAL | ExploitDB | 12% | — |
|
CVE-2019-11703
A flaw in Thunderbird's implementation of iCal causes a heap buffer overflow in parser_get_next_char when processing certain emai… |
CRITICAL | ExploitDB | 11% | |
|
CVE-2019-11704
A flaw in Thunderbird's implementation of iCal causes a heap buffer overflow in icalmemory_strdup_and_dequote when processing cer… |
CRITICAL | ExploitDB | 11% | |
|
CVE-2019-11705
A flaw in Thunderbird's implementation of iCal causes a stack buffer overflow in icalrecur_add_bydayrules when processing certain… |
CRITICAL | ExploitDB | 10% | |
|
CVE-2016-3861
Indexed via Android Security Bulletin — full NVD metadata pending. |
CRITICAL | ExploitDB | 10% | |
|
CVE-2016-10277
Indexed via Android Security Bulletin — full NVD metadata pending. |
CRITICAL | ExploitDB | 10% | |
|
CVE-2017-11120
Indexed via Android Security Bulletin — full NVD metadata pending. |
CRITICAL | ExploitDB | 9% | |
|
CVE-2019-2107
Indexed via Android Security Bulletin — full NVD metadata pending. |
CRITICAL | ExploitDB | 9% | |
|
CVE-2016-6256
SAP Business One for Android 1.2.3 allows remote attackers to conduct XML External Entity (XXE) attacks via crafted XML data in a… |
CRITICAL | ExploitDB | 8% | — |
Exploits agrégés depuis ExploitDB, Nuclei, Metasploit et les PoC GitHub, mappés aux CVE que Scout indexe. À des fins de recherche défensive et de test d'exposition uniquement.