Vulnérabilités
Vulnérabilités des apps suivies
26 089 CVE touchent une app ou un OS suivi (toutes sévérités, toutes plateformes). 373 figurent au catalogue CISA KEV, donc leur exploitation est avérée.
- CVE correspondantes
- 26 089
- Activement exploitées
- 373
- Fenêtre de publication
- 1997-01-01 → 2026-10-02
Tri chronologique : du plus récent au plus ancien. Pour prioriser, utilise les filtres KEV / sévérité ci-dessus.
| CVE |
|---|
|
CVE-2023-36903
HIGH 7.8
Windows System Assessment Tool Elevation of Privilege Vulnerability |
|
CVE-2023-36900
HIGH 7.8
Windows Common Log File System Driver Elevation of Privilege Vulnerability |
|
CVE-2023-36898
HIGH 7.8
Tablet Windows User Interface Application Core Remote Code Execution Vulnerability |
|
CVE-2023-36897
Visual Studio Tools for Office Runtime Spoofing Vulnerability |
|
CVE-2023-36896
Microsoft Excel Remote Code Execution Vulnerability |
|
CVE-2023-36895
Microsoft Outlook Remote Code Execution Vulnerability |
|
CVE-2023-36893
Microsoft Outlook Spoofing Vulnerability |
|
CVE-2023-36889
MEDIUM 5.5
Windows Group Policy Security Feature Bypass Vulnerability |
|
CVE-2023-36882
HIGH 8.8
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |
|
CVE-2023-36866
Microsoft Office Visio Remote Code Execution Vulnerability |
|
CVE-2023-36865
Microsoft Office Visio Remote Code Execution Vulnerability |
|
CVE-2023-36535
Client-side enforcement of server-side security in Zoom clients before 5.14.10 may allow an authenticated user to enable information disclosure via network acc… |
|
CVE-2023-36532
Buffer overflow in Zoom Clients before 5.14.5 may allow an unauthenticated user to enable a denial of service via network access. |
|
CVE-2023-35387
HIGH 8.8
Windows Bluetooth A2DP driver Elevation of Privilege Vulnerability |
|
CVE-2023-35386
HIGH 7.8
Windows Kernel Elevation of Privilege Vulnerability |
|
CVE-2023-35385
CRITICAL 9.8
Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability |
|
CVE-2023-35384
MEDIUM 5.4
Windows HTML Platforms Security Feature Bypass Vulnerability |
|
CVE-2023-35383
HIGH 7.5
Microsoft Message Queuing Information Disclosure Vulnerability |
|
CVE-2023-35382
HIGH 7.8
Windows Kernel Elevation of Privilege Vulnerability |
|
CVE-2023-35381
HIGH 8.8
Windows Fax Service Remote Code Execution Vulnerability |
|
CVE-2023-35380
HIGH 7.8
Windows Kernel Elevation of Privilege Vulnerability |
|
CVE-2023-35378
HIGH 7.0
Windows Projected File System Elevation of Privilege Vulnerability |
|
CVE-2023-35377
MEDIUM 6.5
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability |
|
CVE-2023-35376
MEDIUM 6.5
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability |
|
CVE-2023-35372
Microsoft Office Visio Remote Code Execution Vulnerability |
|
CVE-2023-35371
Microsoft Office Remote Code Execution Vulnerability |
|
CVE-2023-35359
HIGH 7.8
Windows Kernel Elevation of Privilege Vulnerability |
|
CVE-2023-29330
HIGH 8.8
Microsoft Teams Remote Code Execution Vulnerability |
|
CVE-2023-29328
HIGH 8.8
Microsoft Teams Remote Code Execution Vulnerability |
|
CVE-2023-38154
HIGH · éditeur
Windows Kernel Elevation of Privilege Vulnerability |
|
CVE-2023-20569
HIGH · éditeur
AMD: CVE-2023-20569 Return Address Predictor |
|
CVE-2022-4955
Inappropriate implementation in DevTools in Google Chrome prior to 108.0.5359.71 allowed an attacker who convinced a user to install a malicious extension to b… |
|
CVE-2023-4078
Inappropriate implementation in Extensions in Google Chrome prior to 115.0.5790.170 allowed an attacker who convinced a user to install a malicious extension t… |
|
CVE-2023-4077
Insufficient data validation in Extensions in Google Chrome prior to 115.0.5790.170 allowed an attacker who convinced a user to install a malicious extension t… |
|
CVE-2023-4076
Use after free in WebRTC in Google Chrome prior to 115.0.5790.170 allowed a remote attacker to potentially exploit heap corruption via a crafted WebRTC session… |
|
CVE-2023-4075
Use after free in Cast in Google Chrome prior to 115.0.5790.170 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chro… |
|
CVE-2023-4074
Use after free in Blink Task Scheduling in Google Chrome prior to 115.0.5790.170 allowed a remote attacker to potentially exploit heap corruption via a crafted… |
|
CVE-2023-4073
Out of bounds memory access in ANGLE in Google Chrome on Mac prior to 115.0.5790.170 allowed a remote attacker to potentially exploit heap corruption via a cra… |
|
CVE-2023-4072
Out of bounds read and write in WebGL in Google Chrome prior to 115.0.5790.170 allowed a remote attacker to potentially exploit heap corruption via a crafted H… |
|
CVE-2023-4071
Heap buffer overflow in Visuals in Google Chrome prior to 115.0.5790.170 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pa… |
|
CVE-2023-4070
Type Confusion in V8 in Google Chrome prior to 115.0.5790.170 allowed a remote attacker to perform arbitrary read/write via a crafted HTML page. (Chromium secu… |
|
CVE-2023-4069
Type Confusion in V8 in Google Chrome prior to 115.0.5790.170 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromi… |
|
CVE-2023-4068
Type Confusion in V8 in Google Chrome prior to 115.0.5790.170 allowed a remote attacker to perform arbitrary read/write via a crafted HTML page. (Chromium secu… |
|
CVE-2023-3740
Insufficient validation of untrusted input in Themes in Google Chrome prior to 115.0.5790.98 allowed a remote attacker to potentially serve malicious content t… |
|
CVE-2023-3739
Insufficient validation of untrusted input in Chromad in Google Chrome on ChromeOS prior to 115.0.5790.131 allowed a remote attacker to execute arbitrary code … |
|
CVE-2023-3738
Inappropriate implementation in Autofill in Google Chrome prior to 115.0.5790.98 allowed a remote attacker to obfuscate security UI via a crafted HTML page. (C… |
|
CVE-2023-3737
Inappropriate implementation in Notifications in Google Chrome prior to 115.0.5790.98 allowed a remote attacker to spoof the contents of media notifications vi… |
|
CVE-2023-3736
Inappropriate implementation in Custom Tabs in Google Chrome on Android prior to 115.0.5790.98 allowed a remote attacker to leak cross-origin data via a crafte… |
|
CVE-2023-3735
Inappropriate implementation in Web API Permission Prompts in Google Chrome prior to 115.0.5790.98 allowed a remote attacker to obfuscate security UI via a cra… |
|
CVE-2023-3734
Inappropriate implementation in Picture In Picture in Google Chrome prior to 115.0.5790.98 allowed a remote attacker to potentially spoof the contents of the O… |
Gérez votre parc avec Appaloosa
Appaloosa pousse mises à jour d'OS, apps et politiques sur vos appareils Windows, macOS, iOS et Android depuis une seule console.