Vulnérabilités
Vulnérabilités des apps suivies
25 986 CVE touchent une app ou un OS suivi (toutes sévérités, toutes plateformes). 373 figurent au catalogue CISA KEV, donc leur exploitation est avérée.
- CVE correspondantes
- 25 986
- Activement exploitées
- 373
- Fenêtre de publication
- 1997-01-01 → 2026-10-02
Tri chronologique : du plus récent au plus ancien. Pour prioriser, utilise les filtres KEV / sévérité ci-dessus.
| CVE |
|---|
|
CVE-2023-6112
Use after free in Navigation in Google Chrome prior to 119.0.6045.159 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.… |
|
CVE-2023-5997
Use after free in Garbage Collection in Google Chrome prior to 119.0.6045.159 allowed a remote attacker to potentially exploit heap corruption via a crafted HT… |
|
CVE-2023-43588
LOW 3.5
Insufficient control flow management in some Zoom clients may allow an authenticated user to conduct an information disclosure via network access. |
|
CVE-2023-43582
Improper authorization in some Zoom clients may allow an authorized user to conduct an escalation of privilege via network access. |
|
CVE-2023-39206
Buffer overflow in some Zoom clients may allow an unauthenticated user to conduct a denial of service via network access. |
|
CVE-2023-39205
Improper conditions check in Zoom Team Chat for Zoom clients may allow an authenticated user to conduct a denial of service via network access. |
|
CVE-2023-39204
Buffer overflow in some Zoom clients may allow an unauthenticated user to conduct a denial of service via network access. |
|
CVE-2023-39199
Cryptographic issues with In-Meeting Chat for some Zoom clients may allow a privileged user to conduct an information disclosure via network access. |
|
CVE-2023-36041
Microsoft Excel Remote Code Execution Vulnerability |
|
CVE-2023-36037
Microsoft Excel Security Feature Bypass Vulnerability |
|
CVE-2023-36719
HIGH · éditeur
Microsoft Speech Application Programming Interface (SAPI) Elevation of Privilege Vulnerability |
|
CVE-2023-36705
HIGH · éditeur
Windows Installer Elevation of Privilege Vulnerability |
|
CVE-2023-36428
HIGH · éditeur
Microsoft Local Security Authority Subsystem Service Information Disclosure Vulnerability |
|
CVE-2023-36427
HIGH · éditeur
Windows Hyper-V Elevation of Privilege Vulnerability |
|
CVE-2023-36425
HIGH · éditeur
Windows Distributed File System (DFS) Remote Code Execution Vulnerability |
|
CVE-2023-36424
Windows Common Log File System Driver Elevation of Privilege Vulnerability |
|
CVE-2023-36423
HIGH · éditeur
Microsoft Remote Registry Service Remote Code Execution Vulnerability |
|
CVE-2023-36408
HIGH · éditeur
Windows Hyper-V Elevation of Privilege Vulnerability |
|
CVE-2023-36407
HIGH · éditeur
Windows Hyper-V Elevation of Privilege Vulnerability |
|
CVE-2023-36406
HIGH · éditeur
Windows Hyper-V Information Disclosure Vulnerability |
|
CVE-2023-36405
HIGH · éditeur
Windows Kernel Elevation of Privilege Vulnerability |
|
CVE-2023-36404
HIGH · éditeur
Windows Kernel Information Disclosure Vulnerability |
|
CVE-2023-36403
HIGH · éditeur
Windows Kernel Elevation of Privilege Vulnerability |
|
CVE-2023-36402
HIGH · éditeur
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |
|
CVE-2023-36401
HIGH · éditeur
Microsoft Remote Registry Service Remote Code Execution Vulnerability |
|
CVE-2023-36400
CRITICAL · éditeur
Windows HMAC Key Derivation Elevation of Privilege Vulnerability |
|
CVE-2023-36399
HIGH · éditeur
Windows Storage Elevation of Privilege Vulnerability |
|
CVE-2023-36398
HIGH · éditeur
Windows NTFS Information Disclosure Vulnerability |
|
CVE-2023-36397
CRITICAL · éditeur
Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability |
|
CVE-2023-36396
HIGH · éditeur
Windows Compressed Folder Remote Code Execution Vulnerability |
|
CVE-2023-36395
HIGH · éditeur
Windows Deployment Services Denial of Service Vulnerability |
|
CVE-2023-36394
HIGH · éditeur
Windows Search Service Elevation of Privilege Vulnerability |
|
CVE-2023-36393
HIGH · éditeur
Windows User Interface Application Core Remote Code Execution Vulnerability |
|
CVE-2023-36392
HIGH · éditeur
DHCP Server Service Denial of Service Vulnerability |
|
CVE-2023-36047
HIGH · éditeur
Windows Authentication Elevation of Privilege Vulnerability |
|
CVE-2023-36046
HIGH · éditeur
Windows Authentication Denial of Service Vulnerability |
|
CVE-2023-36036
Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability |
|
CVE-2023-36033
Windows DWM Core Library Elevation of Privilege Vulnerability |
|
CVE-2023-36028
HIGH · éditeur
Microsoft Protected Extensible Authentication Protocol (PEAP) Remote Code Execution Vulnerability |
|
CVE-2023-36025
Windows SmartScreen Security Feature Bypass Vulnerability |
|
CVE-2023-36017
HIGH · éditeur
Windows Scripting Engine Memory Corruption Vulnerability |
|
CVE-2023-5996
Use after free in WebAudio in Google Chrome prior to 119.0.6045.123 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (… |
|
CVE-2023-31102
HIGH 7.8
Ppmd7.c in 7-Zip before 23.00 allows an integer underflow and invalid read operation via a crafted 7Z archive. |
|
CVE-2023-36029
MEDIUM 4.3
Microsoft Edge (Chromium-based) Spoofing Vulnerability |
|
CVE-2023-5859
Incorrect security UI in Picture In Picture in Google Chrome prior to 119.0.6045.105 allowed a remote attacker to perform domain spoofing via a crafted local H… |
|
CVE-2023-5858
Inappropriate implementation in WebApp Provider in Google Chrome prior to 119.0.6045.105 allowed a remote attacker to obfuscate security UI via a crafted HTML … |
|
CVE-2023-5857
Inappropriate implementation in Downloads in Google Chrome prior to 119.0.6045.105 allowed a remote attacker to potentially execute arbitrary code via a malici… |
|
CVE-2023-5856
Use after free in Side Panel in Google Chrome prior to 119.0.6045.105 allowed a remote attacker who convinced a user to engage in specific UI gestures to poten… |
|
CVE-2023-5855
Use after free in Reading Mode in Google Chrome prior to 119.0.6045.105 allowed a remote attacker who convinced a user to engage in specific UI gestures to pot… |
|
CVE-2023-5854
Use after free in Profiles in Google Chrome prior to 119.0.6045.105 allowed a remote attacker who convinced a user to engage in specific UI gestures to potenti… |
Gérez votre parc avec Appaloosa
Appaloosa pousse mises à jour d'OS, apps et politiques sur vos appareils Windows, macOS, iOS et Android depuis une seule console.