Aller au contenu
Appaloosa Scout
Sélection de la langue
fr en

Vulnérabilités

Vulnérabilités des apps suivies

25 741 CVE touchent une app ou un OS suivi (toutes sévérités, toutes plateformes). 372 figurent au catalogue CISA KEV, donc leur exploitation est avérée.

CVE correspondantes
25 741
Activement exploitées
372
Fenêtre de publication
1997-01-01 → 2026-09-17

Tri chronologique : du plus récent au plus ancien. Pour prioriser, utilise les filtres KEV / sévérité ci-dessus.

25 741 entrées
CVE
CVE-2026-69784
HIGH 8.8

Use after free in Windows Hello allows an authorized attacker to elevate privileges locally.

CVE-2026-69782
HIGH 8.1

Concurrent execution using shared resource with improper synchronization ('race condition') in DNS Server allows an unauthorized attacker to execute code over …

CVE-2026-69781
MEDIUM 6.5

Missing release of memory after effective lifetime in Windows DHCP Client allows an unauthorized attacker to deny service over an adjacent network.

CVE-2026-69779
HIGH 7.0

Time-of-check time-of-use (toctou) race condition in Windows Win32K allows an authorized attacker to elevate privileges locally.

CVE-2026-69777
HIGH 8.0

Heap-based buffer overflow in Windows DHCP Client allows an authorized attacker to elevate privileges over an adjacent network.

CVE-2026-69775
HIGH 7.1

Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges over a network.

CVE-2026-69773
HIGH 8.0

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges over a network.

CVE-2026-69772
HIGH 8.8

Heap-based buffer overflow in Windows Network File System allows an unauthorized attacker to execute code over a network.

CVE-2026-69771
MEDIUM 4.7

Improper link resolution before file access ('link following') in Windows Container Manager Service allows an authorized attacker to bypass a security feature …

CVE-2026-69770
MEDIUM 5.5

Use of uninitialized resource in Windows Spaceport.sys allows an authorized attacker to disclose information locally.

CVE-2026-69769
CRITICAL 9.8

Heap-based buffer overflow in Windows HTTP Print Provider allows an unauthorized attacker to execute code over a network.

CVE-2026-69768
CRITICAL 9.8

Heap-based buffer overflow in Windows RNDIS allows an unauthorized attacker to execute code over a network.

CVE-2026-69767
HIGH 8.8

Use after free in Microsoft Office PowerPoint allows an unauthorized attacker to execute code over a network.

CVE-2026-69764
HIGH 8.8

Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network.

CVE-2026-69762
HIGH 8.0

Stack-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges over a network.

CVE-2026-69761
HIGH 7.1

Use after free in Windows TCP/IP allows an authorized attacker to elevate privileges over a network.

CVE-2026-69760
HIGH 7.5

Out-of-bounds read in Windows Kerberos allows an unauthorized attacker to deny service over a network.

CVE-2026-69759
HIGH 8.8

Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network.

CVE-2026-69758
HIGH 7.8

Heap-based buffer overflow in Windows Universal Disk Format File System Driver (UDFS) allows an authorized attacker to elevate privileges locally.

CVE-2026-69757
HIGH 7.1

Use after free in Windows TCP/IP allows an authorized attacker to elevate privileges over a network.

CVE-2026-69744
HIGH 7.5

Null pointer dereference in Windows Kerberos allows an unauthorized attacker to deny service over a network.

CVE-2026-69741
MEDIUM 5.5

Out-of-bounds read in Windows Spaceport.sys allows an authorized attacker to disclose information locally.

CVE-2026-69740
HIGH 8.8

Use after free in Windows Hello allows an authorized attacker to elevate privileges locally.

CVE-2026-69738
HIGH 7.8

Integer overflow or wraparound in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

CVE-2026-69735
HIGH 7.0

Use after free in Windows Broadcast DVR User Service allows an authorized attacker to elevate privileges locally.

CVE-2026-69734
MEDIUM 6.5

Integer overflow or wraparound in Microsoft Office Word allows an unauthorized attacker to disclose information over a network.

CVE-2026-69732
HIGH 8.1

Heap-based buffer overflow in Windows Link Layer Topology Discovery Protocol allows an unauthorized attacker to execute code over a network.

CVE-2026-69731
HIGH 7.8

Heap-based buffer overflow in HID class driver allows an authorized attacker to elevate privileges locally.

CVE-2026-69730
CRITICAL 9.8

Use after free in Windows DNS allows an unauthorized attacker to execute code over a network.

CVE-2026-69729
HIGH 8.8

Heap-based buffer overflow in Windows Credential Providers allows an authorized attacker to execute code over a network.

CVE-2026-69727
HIGH 8.0

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges over a network.

CVE-2026-69725
HIGH 7.8

Double free in Windows Hello allows an authorized attacker to elevate privileges locally.

CVE-2026-69723
MEDIUM 5.7

Exposure of sensitive system information to an unauthorized control sphere in Windows Kernel allows an authorized attacker to disclose information over a netwo…

CVE-2026-69722
HIGH 8.8

Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network.

CVE-2026-69720
HIGH 7.8

Heap-based buffer overflow in Windows MIDI Service Module allows an authorized attacker to elevate privileges locally.

CVE-2026-69719
MEDIUM 6.5

Buffer over-read in Microsoft Office Word allows an unauthorized attacker to disclose information over a network.

CVE-2026-69717
HIGH 8.0

Untrusted pointer dereference in Windows Group Policy allows an authorized attacker to elevate privileges over a network.

CVE-2026-69715
CRITICAL 9.8

Out-of-bounds read in Windows Direct Show allows an unauthorized attacker to execute code over a network.

CVE-2026-69714
HIGH 8.0

Stack-based buffer overflow in Windows Device Association Service allows an authorized attacker to elevate privileges over a network.

CVE-2026-69713
MEDIUM 4.4

Dependency on vulnerable third-party component in Windows Secure Boot allows an authorized attacker to bypass a security feature locally.

CVE-2026-69712
HIGH 8.8

Use after free in Windows Key Distribution Center allows an authorized attacker to execute code over a network.

CVE-2026-69711
HIGH 7.0

Use after free in Windows Device Association Service allows an authorized attacker to elevate privileges locally.

CVE-2026-69710
HIGH 7.5

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Hello allows an authorized attacker to elevate privilege…

CVE-2026-69709
HIGH 7.8

Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.

CVE-2026-69708
HIGH 7.0

Use after free in Windows Web Platform Storage allows an authorized attacker to elevate privileges locally.

CVE-2026-69707
HIGH 7.8

Integer overflow or wraparound in Windows USB Audio Class driver (usbaudio.sys) allows an authorized attacker to elevate privileges locally.

CVE-2026-69706
HIGH 7.1

Use after free in Windows Win32K allows an authorized attacker to elevate privileges over a network.

CVE-2026-69694
HIGH 7.0

Deserialization of untrusted data in Windows IP Address Management (IPAM) Service allows an authorized attacker to elevate privileges locally.

CVE-2026-69693
HIGH 7.0

Use after free in Windows Device Association Broker service allows an authorized attacker to elevate privileges locally.

CVE-2026-69692
HIGH 7.0

Use after free in Windows Audio Service allows an authorized attacker to elevate privileges locally.

Gérez votre parc avec Appaloosa

Appaloosa pousse mises à jour d'OS, apps et politiques sur vos appareils Windows, macOS, iOS et Android depuis une seule console.

Découvrir le MDM Appaloosa