Aller au contenu
Appaloosa Scout
Sélection de la langue
fr en

Vulnérabilités

Vulnérabilités des apps suivies

25 946 CVE touchent une app ou un OS suivi (toutes sévérités, toutes plateformes). 373 figurent au catalogue CISA KEV, donc leur exploitation est avérée.

CVE correspondantes
25 946
Activement exploitées
373
Fenêtre de publication
1997-01-01 → 2026-09-29

Tri chronologique : du plus récent au plus ancien. Pour prioriser, utilise les filtres KEV / sévérité ci-dessus.

25 946 entrées
CVE
CVE-2024-38142
HIGH · éditeur

Windows Secure Kernel Mode Elevation of Privilege Vulnerability

CVE-2024-38141
HIGH · éditeur

Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability

CVE-2024-38140
CRITICAL · éditeur

Windows Reliable Multicast Transport Driver (RMCAST) Remote Code Execution Vulnerability

CVE-2024-38138
HIGH · éditeur

Windows Deployment Services Remote Code Execution Vulnerability

CVE-2024-38137
HIGH · éditeur

Windows Resource Manager PSM Service Extension Elevation of Privilege Vulnerability

CVE-2024-38136
HIGH · éditeur

Windows Resource Manager PSM Service Extension Elevation of Privilege Vulnerability

CVE-2024-38135
HIGH · éditeur

Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability

CVE-2024-38134
HIGH · éditeur

Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability

CVE-2024-38133
HIGH · éditeur

Windows Kernel Elevation of Privilege Vulnerability

CVE-2024-38132
HIGH · éditeur

Windows Network Address Translation (NAT) Denial of Service Vulnerability

CVE-2024-38131
HIGH · éditeur

Clipboard Virtual Channel Extension Remote Code Execution Vulnerability

CVE-2024-38130
HIGH · éditeur

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

CVE-2024-38128
HIGH · éditeur

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

CVE-2024-38127
HIGH · éditeur

Windows Hyper-V Elevation of Privilege Vulnerability

CVE-2024-38126
HIGH · éditeur

Windows Network Address Translation (NAT) Denial of Service Vulnerability

CVE-2024-38125
HIGH · éditeur

Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability

CVE-2024-38123
HIGH · éditeur

Windows Bluetooth Driver Information Disclosure Vulnerability

CVE-2024-38122
HIGH · éditeur

Microsoft Local Security Authority (LSA) Server Information Disclosure Vulnerability

CVE-2024-38121
HIGH · éditeur

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

CVE-2024-38120
HIGH · éditeur

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

CVE-2024-38118
HIGH · éditeur

Microsoft Local Security Authority (LSA) Server Information Disclosure Vulnerability

CVE-2024-38117
HIGH · éditeur

NTFS Elevation of Privilege Vulnerability

CVE-2024-38116
HIGH · éditeur

Windows IP Routing Management Snapin Remote Code Execution Vulnerability

CVE-2024-38115
HIGH · éditeur

Windows IP Routing Management Snapin Remote Code Execution Vulnerability

CVE-2024-38114
HIGH · éditeur

Windows IP Routing Management Snapin Remote Code Execution Vulnerability

CVE-2024-38107
HIGH · éditeur KEV

Windows Power Dependency Coordinator Elevation of Privilege Vulnerability

CVE-2024-38106
HIGH · éditeur KEV

Windows Kernel Elevation of Privilege Vulnerability

CVE-2024-38063
CRITICAL · éditeur

Windows TCP/IP Remote Code Execution Vulnerability

CVE-2024-37968
HIGH · éditeur

Windows DNS Spoofing Vulnerability

CVE-2024-29995
HIGH · éditeur

Windows Kerberos Elevation of Privilege Vulnerability

CVE-2024-21302
HIGH · éditeur

Windows Secure Kernel Mode Elevation of Privilege Vulnerability

CVE-2024-7550
HIGH 8.8

Type Confusion in V8 in Google Chrome prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromiu…

CVE-2024-7536
HIGH 8.8

Use after free in WebAudio in Google Chrome prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (C…

CVE-2024-7535
HIGH 8.8

Inappropriate implementation in V8 in Google Chrome prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML …

CVE-2024-7534
HIGH 8.8

Heap buffer overflow in Layout in Google Chrome prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page…

CVE-2024-7533
HIGH 8.8

Use after free in Sharing in Google Chrome on iOS prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pa…

CVE-2024-7532
HIGH 8.8

Out of bounds memory access in ANGLE in Google Chrome prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTM…

CVE-2024-42219
HIGH 7.8

1Password 8 before 8.10.36 for macOS allows local attackers to exfiltrate vault items because XPC inter-process communication validation is insufficient.

CVE-2024-42218
MEDIUM 4.7

1Password 8 before 8.10.38 for macOS allows local attackers to exfiltrate vault items by bypassing macOS-specific security mechanisms.

CVE-2024-7005
MEDIUM 4.3

Insufficient validation of untrusted input in Safe Browsing in Google Chrome prior to 127.0.6533.72 allowed a remote attacker who convinced a user to engage in…

CVE-2024-7004
MEDIUM 4.3

Insufficient validation of untrusted input in Safe Browsing in Google Chrome prior to 127.0.6533.72 allowed a remote attacker who convinced a user to engage in…

CVE-2024-7003
MEDIUM 4.3

Inappropriate implementation in FedCM in Google Chrome prior to 127.0.6533.72 allowed a remote attacker who convinced a user to engage in specific UI gestures …

CVE-2024-7001
MEDIUM 4.3

Inappropriate implementation in HTML in Google Chrome prior to 127.0.6533.72 allowed a remote attacker who convinced a user to engage in specific UI gestures t…

CVE-2024-7000
HIGH 8.8

Use after free in CSS in Google Chrome prior to 127.0.6533.72 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially e…

CVE-2024-6999
MEDIUM 4.3

Inappropriate implementation in FedCM in Google Chrome prior to 127.0.6533.72 allowed a remote attacker who convinced a user to engage in specific UI gestures …

CVE-2024-6998
HIGH 8.8

Use after free in User Education in Google Chrome prior to 127.0.6533.72 allowed a remote attacker who convinced a user to engage in specific UI gestures to po…

CVE-2024-6997
HIGH 8.8

Use after free in Tabs in Google Chrome prior to 127.0.6533.72 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially …

CVE-2024-6996
LOW 3.1

Race in Frames in Google Chrome prior to 127.0.6533.72 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform UI spoofing …

CVE-2024-6995
MEDIUM 4.7

Inappropriate implementation in Fullscreen in Google Chrome on Android prior to 127.0.6533.72 allowed a remote attacker who convinced a user to engage in speci…

CVE-2024-6994
HIGH 8.8

Heap buffer overflow in Layout in Google Chrome prior to 127.0.6533.72 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page…

Gérez votre parc avec Appaloosa

Appaloosa pousse mises à jour d'OS, apps et politiques sur vos appareils Windows, macOS, iOS et Android depuis une seule console.

Découvrir le MDM Appaloosa