Aller au contenu
Appaloosa Scout
Sélection de la langue
fr en

Vulnérabilités

Vulnérabilités des apps suivies

26 089 CVE touchent une app ou un OS suivi (toutes sévérités, toutes plateformes). 373 figurent au catalogue CISA KEV, donc leur exploitation est avérée.

CVE correspondantes
26 089
Activement exploitées
373
Fenêtre de publication
1997-01-01 → 2026-10-02

Tri chronologique : du plus récent au plus ancien. Pour prioriser, utilise les filtres KEV / sévérité ci-dessus.

26 089 entrées
CVE
CVE-2023-36903
HIGH 7.8

Windows System Assessment Tool Elevation of Privilege Vulnerability

CVE-2023-36900
HIGH 7.8

Windows Common Log File System Driver Elevation of Privilege Vulnerability

CVE-2023-36898
HIGH 7.8

Tablet Windows User Interface Application Core Remote Code Execution Vulnerability

CVE-2023-36897
HIGH 8.1

Visual Studio Tools for Office Runtime Spoofing Vulnerability

CVE-2023-36896
HIGH 7.8

Microsoft Excel Remote Code Execution Vulnerability

CVE-2023-36895
HIGH 7.8

Microsoft Outlook Remote Code Execution Vulnerability

CVE-2023-36893
MEDIUM 6.5

Microsoft Outlook Spoofing Vulnerability

CVE-2023-36889
MEDIUM 5.5

Windows Group Policy Security Feature Bypass Vulnerability

CVE-2023-36882
HIGH 8.8

Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability

CVE-2023-36866
HIGH 7.8

Microsoft Office Visio Remote Code Execution Vulnerability

CVE-2023-36865
HIGH 7.8

Microsoft Office Visio Remote Code Execution Vulnerability

CVE-2023-36535
HIGH 7.1

Client-side enforcement of server-side security in Zoom clients before 5.14.10 may allow an authenticated user to enable information disclosure via network acc…

CVE-2023-36532
MEDIUM 5.9

Buffer overflow in Zoom Clients before 5.14.5 may allow an unauthenticated user to enable a denial of service via network access.

CVE-2023-35387
HIGH 8.8

Windows Bluetooth A2DP driver Elevation of Privilege Vulnerability

CVE-2023-35386
HIGH 7.8

Windows Kernel Elevation of Privilege Vulnerability

CVE-2023-35385
CRITICAL 9.8

Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability

CVE-2023-35384
MEDIUM 5.4

Windows HTML Platforms Security Feature Bypass Vulnerability

CVE-2023-35383
HIGH 7.5

Microsoft Message Queuing Information Disclosure Vulnerability

CVE-2023-35382
HIGH 7.8

Windows Kernel Elevation of Privilege Vulnerability

CVE-2023-35381
HIGH 8.8

Windows Fax Service Remote Code Execution Vulnerability

CVE-2023-35380
HIGH 7.8

Windows Kernel Elevation of Privilege Vulnerability

CVE-2023-35378
HIGH 7.0

Windows Projected File System Elevation of Privilege Vulnerability

CVE-2023-35377
MEDIUM 6.5

Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability

CVE-2023-35376
MEDIUM 6.5

Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability

CVE-2023-35372
HIGH 7.8

Microsoft Office Visio Remote Code Execution Vulnerability

CVE-2023-35371
HIGH 7.8

Microsoft Office Remote Code Execution Vulnerability

CVE-2023-35359
HIGH 7.8

Windows Kernel Elevation of Privilege Vulnerability

CVE-2023-29330
HIGH 8.8

Microsoft Teams Remote Code Execution Vulnerability

CVE-2023-29328
HIGH 8.8

Microsoft Teams Remote Code Execution Vulnerability

CVE-2023-38154
HIGH · éditeur

Windows Kernel Elevation of Privilege Vulnerability

CVE-2023-20569
HIGH · éditeur

AMD: CVE-2023-20569 Return Address Predictor

CVE-2022-4955
MEDIUM 6.5

Inappropriate implementation in DevTools in Google Chrome prior to 108.0.5359.71 allowed an attacker who convinced a user to install a malicious extension to b…

CVE-2023-4078
HIGH 8.8

Inappropriate implementation in Extensions in Google Chrome prior to 115.0.5790.170 allowed an attacker who convinced a user to install a malicious extension t…

CVE-2023-4077
HIGH 8.8

Insufficient data validation in Extensions in Google Chrome prior to 115.0.5790.170 allowed an attacker who convinced a user to install a malicious extension t…

CVE-2023-4076
HIGH 8.8

Use after free in WebRTC in Google Chrome prior to 115.0.5790.170 allowed a remote attacker to potentially exploit heap corruption via a crafted WebRTC session…

CVE-2023-4075
HIGH 8.8

Use after free in Cast in Google Chrome prior to 115.0.5790.170 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chro…

CVE-2023-4074
HIGH 8.8

Use after free in Blink Task Scheduling in Google Chrome prior to 115.0.5790.170 allowed a remote attacker to potentially exploit heap corruption via a crafted…

CVE-2023-4073
HIGH 8.8

Out of bounds memory access in ANGLE in Google Chrome on Mac prior to 115.0.5790.170 allowed a remote attacker to potentially exploit heap corruption via a cra…

CVE-2023-4072
HIGH 8.8

Out of bounds read and write in WebGL in Google Chrome prior to 115.0.5790.170 allowed a remote attacker to potentially exploit heap corruption via a crafted H…

CVE-2023-4071
HIGH 8.8

Heap buffer overflow in Visuals in Google Chrome prior to 115.0.5790.170 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pa…

CVE-2023-4070
HIGH 8.1

Type Confusion in V8 in Google Chrome prior to 115.0.5790.170 allowed a remote attacker to perform arbitrary read/write via a crafted HTML page. (Chromium secu…

CVE-2023-4069
HIGH 8.8

Type Confusion in V8 in Google Chrome prior to 115.0.5790.170 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromi…

CVE-2023-4068
HIGH 8.1

Type Confusion in V8 in Google Chrome prior to 115.0.5790.170 allowed a remote attacker to perform arbitrary read/write via a crafted HTML page. (Chromium secu…

CVE-2023-3740
MEDIUM 4.3

Insufficient validation of untrusted input in Themes in Google Chrome prior to 115.0.5790.98 allowed a remote attacker to potentially serve malicious content t…

CVE-2023-3739
MEDIUM 6.3

Insufficient validation of untrusted input in Chromad in Google Chrome on ChromeOS prior to 115.0.5790.131 allowed a remote attacker to execute arbitrary code …

CVE-2023-3738
MEDIUM 4.3

Inappropriate implementation in Autofill in Google Chrome prior to 115.0.5790.98 allowed a remote attacker to obfuscate security UI via a crafted HTML page. (C…

CVE-2023-3737
MEDIUM 4.3

Inappropriate implementation in Notifications in Google Chrome prior to 115.0.5790.98 allowed a remote attacker to spoof the contents of media notifications vi…

CVE-2023-3736
MEDIUM 4.3

Inappropriate implementation in Custom Tabs in Google Chrome on Android prior to 115.0.5790.98 allowed a remote attacker to leak cross-origin data via a crafte…

CVE-2023-3735
MEDIUM 4.3

Inappropriate implementation in Web API Permission Prompts in Google Chrome prior to 115.0.5790.98 allowed a remote attacker to obfuscate security UI via a cra…

CVE-2023-3734
MEDIUM 4.3

Inappropriate implementation in Picture In Picture in Google Chrome prior to 115.0.5790.98 allowed a remote attacker to potentially spoof the contents of the O…

Gérez votre parc avec Appaloosa

Appaloosa pousse mises à jour d'OS, apps et politiques sur vos appareils Windows, macOS, iOS et Android depuis une seule console.

Découvrir le MDM Appaloosa