Aller au contenu
Appaloosa Scout
Sélection de la langue
fr en

Vulnérabilités

Vulnérabilités des apps suivies

25 741 CVE touchent une app ou un OS suivi (toutes sévérités, toutes plateformes). 372 figurent au catalogue CISA KEV, donc leur exploitation est avérée.

CVE correspondantes
25 741
Activement exploitées
372
Fenêtre de publication
1997-01-01 → 2026-09-17

Tri chronologique : du plus récent au plus ancien. Pour prioriser, utilise les filtres KEV / sévérité ci-dessus.

25 741 entrées
CVE
CVE-2026-78520
MEDIUM 6.5

Out-of-bounds read in Microsoft Office Outlook allows an unauthorized attacker to execute code over a network.

CVE-2026-78519
HIGH 8.8

Use of uninitialized resource in Microsoft Office Outlook allows an unauthorized attacker to execute code over a network.

CVE-2026-78518
HIGH 8.8

Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code over a network.

CVE-2026-78517
HIGH 8.8

Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network.

CVE-2026-78516
MEDIUM 4.3

Buffer over-read in Windows Storage allows an unauthorized attacker to disclose information with a physical attack.

CVE-2026-78514
HIGH 8.8

Use after free in Microsoft Office Word allows an unauthorized attacker to execute code over a network.

CVE-2026-78513
MEDIUM 5.5

Out-of-bounds read in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information locally.

CVE-2026-78512
HIGH 8.8

Numeric truncation error in Microsoft Office Word allows an unauthorized attacker to execute code over a network.

CVE-2026-78511
HIGH 8.8

Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network.

CVE-2026-78509
CRITICAL 9.8

Heap-based buffer overflow in Microsoft Office Outlook allows an unauthorized attacker to execute code over a network.

CVE-2026-78508
MEDIUM 4.6

Out-of-bounds read in Windows CD-ROM Driver allows an unauthorized attacker to disclose information with a physical attack.

CVE-2026-78506
MEDIUM 5.5

Improper null termination in Microsoft Office Word allows an unauthorized attacker to disclose information locally.

CVE-2026-78504
HIGH 8.8

Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network.

CVE-2026-78503
MEDIUM 6.5

Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information over a network.

CVE-2026-78502
MEDIUM 6.5

Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information over a network.

CVE-2026-78464
HIGH 7.0

Time-of-check time-of-use (toctou) race condition in Windows MIDI Service Module allows an authorized attacker to elevate privileges locally.

CVE-2026-78457
HIGH 7.0

Use after free in Windows Security Health Service allows an authorized attacker to elevate privileges locally.

CVE-2026-78455
MEDIUM 4.3

Out-of-bounds read in Xbox allows an unauthorized attacker to disclose information with a physical attack.

CVE-2026-78454
MEDIUM 5.5

Out-of-bounds read in Windows CD-ROM Driver allows an authorized attacker to disclose information locally.

CVE-2026-78453
MEDIUM 6.5

Integer underflow (wrap or wraparound) in Microsoft Windows SCSI Class System File allows an unauthorized attacker to disclose information over a network.

CVE-2026-78452
MEDIUM 4.6

Out-of-bounds read in Microsoft Windows SCSI Class System File allows an unauthorized attacker to disclose information with a physical attack.

CVE-2026-78451
MEDIUM 6.8

Untrusted pointer dereference in Microsoft Windows SCSI Class System File allows an unauthorized attacker to elevate privileges with a physical attack.

CVE-2026-78450
HIGH 8.1

Use after free in Reliable Multicast Transport Driver (RMCAST) allows an unauthorized attacker to execute code over a network.

CVE-2026-78449
HIGH 8.1

Use after free in Reliable Multicast Transport Driver (RMCAST) allows an unauthorized attacker to execute code over a network.

CVE-2026-78448
HIGH 7.8

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

CVE-2026-78446
MEDIUM 5.3

Use after free in Windows Distributed File System (DFS) allows an authorized attacker to deny service over a network.

CVE-2026-78445
CRITICAL 9.8

Use after free in Windows Services for NFS ONCRPC XDR Driver allows an unauthorized attacker to execute code over a network.

CVE-2026-78444
HIGH 8.1

Untrusted pointer dereference in Windows Failover Cluster allows an unauthorized attacker to execute code over a network.

CVE-2026-77911
MEDIUM 6.5

Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information over a network.

CVE-2026-77905
HIGH 7.0

Use after free in Windows Management Instrumentation allows an authorized attacker to elevate privileges locally.

CVE-2026-77904
HIGH 7.8

Heap-based buffer overflow in Windows Volume Manager Extension Driver allows an authorized attacker to elevate privileges locally.

CVE-2026-77901
HIGH 8.8

Null pointer dereference in Microsoft Office Word allows an unauthorized attacker to execute code over a network.

CVE-2026-77899
HIGH 7.0

Use after free in Windows Security Center allows an authorized attacker to elevate privileges locally.

CVE-2026-77895
HIGH 7.5

Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to deny service over a network.

CVE-2026-77894
HIGH 7.0

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Installer allows an authorized attacker to elevate privi…

CVE-2026-77893
HIGH 7.5

Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to deny service over a network.

CVE-2026-77892
MEDIUM 6.8

No cwe for this issue in Windows Boot Manager allows an unauthorized attacker to elevate privileges with a physical attack.

CVE-2026-77891
MEDIUM 6.4

Out-of-bounds read in Windows DHCP Server allows an authorized attacker to execute code locally.

CVE-2026-77890
HIGH 7.5

Access of resource using incompatible type ('type confusion') in Windows DHCP Server allows an unauthorized attacker to deny service over a network.

CVE-2026-77889
HIGH 7.5

Access of resource using incompatible type ('type confusion') in Windows DHCP Server allows an unauthorized attacker to deny service over a network.

CVE-2026-77888
HIGH 7.5

Access of resource using incompatible type ('type confusion') in Windows DHCP Server allows an unauthorized attacker to deny service over a network.

CVE-2026-77887
MEDIUM 6.4

Out-of-bounds read in Windows DHCP Server allows an authorized attacker to execute code locally.

CVE-2026-77886
HIGH 7.5

Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to deny service over a network.

CVE-2026-77502
HIGH 7.5

Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to deny service over a network.

CVE-2026-77501
HIGH 7.5

Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to deny service over a network.

CVE-2026-77500
HIGH 7.8

Release of invalid pointer or reference in Windows Device Association Service allows an authorized attacker to elevate privileges locally.

CVE-2026-77499
HIGH 7.5

Access of resource using incompatible type ('type confusion') in Windows DHCP Server allows an unauthorized attacker to deny service over a network.

CVE-2026-77498
HIGH 7.5

Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to deny service over a network.

CVE-2026-77495
HIGH 8.8

Heap-based buffer overflow in Windows Imaging Component allows an unauthorized attacker to execute code over a network.

CVE-2026-77494
HIGH 7.5

Access of resource using incompatible type ('type confusion') in Windows DHCP Server allows an unauthorized attacker to deny service over a network.