Aller au contenu
Appaloosa Scout
Sélection de la langue
fr en

Vulnérabilités

Vulnérabilités des apps suivies

25 748 CVE touchent une app ou un OS suivi (toutes sévérités, toutes plateformes). 372 figurent au catalogue CISA KEV, donc leur exploitation est avérée.

CVE correspondantes
25 748
Activement exploitées
372
Fenêtre de publication
1997-01-01 → 2026-09-17

Tri chronologique : du plus récent au plus ancien. Pour prioriser, utilise les filtres KEV / sévérité ci-dessus.

25 748 entrées
CVE
CVE-2026-64905
HIGH 7.8

Buffer over-read in Microsoft Office Word allows an unauthorized attacker to execute code locally.

CVE-2026-63531
MEDIUM 5.5

Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information locally.

CVE-2026-63530
MEDIUM 5.5

Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information locally.

CVE-2026-63528
MEDIUM 5.5

Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information locally.

CVE-2026-63527
HIGH 7.8

Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally.

CVE-2026-63525
HIGH 7.8

Numeric truncation error in Microsoft Office Word allows an unauthorized attacker to execute code locally.

CVE-2026-63521
MEDIUM 5.5

Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information locally.

CVE-2026-63518
HIGH 7.8

Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally.

CVE-2026-62908
HIGH 7.0

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Backup Engine allows an authorized attacker to elevate p…

CVE-2026-62894
HIGH 7.8

Heap-based buffer overflow in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.

CVE-2026-62893
CRITICAL 9.8

Use after free in Windows Deployment Services allows an unauthorized attacker to execute code over a network.

CVE-2026-62892
HIGH 7.0

Use after free in Capability Access Management Service (camsvc) allows an authorized attacker to elevate privileges locally.

CVE-2026-62890
HIGH 7.8

Heap-based buffer overflow in Windows GDI+ allows an authorized attacker to execute code locally.

CVE-2026-62889
HIGH 8.1

Double free in Windows Secure Socket Tunneling Protocol (SSTP) allows an unauthorized attacker to execute code over a network.

CVE-2026-62888
HIGH 7.8

Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.

CVE-2026-62887
MEDIUM 5.5

Out-of-bounds read in Windows NTFS allows an authorized attacker to disclose information locally.

CVE-2026-62885
HIGH 7.8

Heap-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges locally.

CVE-2026-62883
MEDIUM 6.7

Numeric truncation error in Windows DNS allows an authorized attacker to elevate privileges locally.

CVE-2026-62882
MEDIUM 4.3

Insufficiently protected credentials in Microsoft Office Outlook allows an unauthorized attacker to perform spoofing over a network.

CVE-2026-62881
MEDIUM 6.7

Numeric truncation error in Windows DNS allows an authorized attacker to elevate privileges locally.

CVE-2026-62880
HIGH 7.8

Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate privileges locally.

CVE-2026-62878
CRITICAL 9.8

Stack-based buffer overflow in Windows DNS allows an unauthorized attacker to execute code over a network.

CVE-2026-62877
HIGH 7.8

Stack-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges locally.

CVE-2026-62876
HIGH 7.8

Out-of-bounds read in Windows Win32K allows an authorized attacker to elevate privileges locally.

CVE-2026-62832
HIGH 7.8

Improper link resolution before file access ('link following') in Windows User Profile Service allows an authorized attacker to elevate privileges locally.

CVE-2026-62824
HIGH 8.8

Stack-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.

CVE-2026-62823
HIGH 8.8

Heap-based buffer overflow in Windows DHCP Server allows an unauthorized attacker to execute code over an adjacent network.

CVE-2026-62822
HIGH 8.8

Integer overflow or wraparound in Windows GDI+ allows an unauthorized attacker to execute code over a network.

CVE-2026-62820
HIGH 8.1

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows DNS allows an unauthorized attacker to execute code over…

CVE-2026-62819
HIGH 8.1

Remote Code Execution in Windows Routing and Remote Access Service (RRAS) allows attacker to gain an unauthorized access to victim's machine

CVE-2026-62818
HIGH 8.8

Use after free in Active Directory Certificate Services (AD CS) allows an authorized attacker to execute code over a network.

CVE-2026-62817
HIGH 8.8

Out-of-bounds write in Windows DNS allows an unauthorized attacker to execute code over an adjacent network.

CVE-2026-62816
HIGH 8.8

Heap-based buffer overflow in Reliable Multicast Transport Driver (RMCAST) allows an unauthorized attacker to execute code over an adjacent network.

CVE-2026-62815
CRITICAL 9.8

Use after free in Microsoft QUIC allows an unauthorized attacker to execute code over a network.

CVE-2026-62814
MEDIUM 6.5

Integer underflow (wrap or wraparound) in Windows DHCP Server allows an unauthorized attacker to disclose information over an adjacent network.

CVE-2026-62812
HIGH 7.8

Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevate privileges locally.

CVE-2026-62811
HIGH 7.8

Heap-based buffer overflow in Windows HTTP.sys allows an authorized attacker to elevate privileges locally.

CVE-2026-62807
HIGH 7.8

Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevate privileges locally.

CVE-2026-62803
HIGH 7.8

Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevate privileges locally.

CVE-2026-62800
HIGH 8.8

Heap-based buffer overflow in Windows SMB Server allows an authorized attacker to execute code over a network.

CVE-2026-62799
HIGH 7.8

Heap-based buffer overflow in Windows SMB Client allows an authorized attacker to elevate privileges locally.

CVE-2026-62798
MEDIUM 5.5

Untrusted pointer dereference in Windows Win32K allows an authorized attacker to disclose information locally.

CVE-2026-62797
HIGH 7.8

Heap-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges locally.

CVE-2026-62796
MEDIUM 5.5

Out-of-bounds read in Windows NTFS allows an authorized attacker to disclose information locally.

CVE-2026-62795
HIGH 8.8

Use after free in Windows LDAP - Lightweight Directory Access Protocol allows an unauthorized attacker to execute code over a network.

CVE-2026-62793
MEDIUM 5.5

Buffer over-read in Windows NTFS allows an authorized attacker to disclose information locally.

CVE-2026-62792
HIGH 8.1

Stack-based buffer overflow in Windows TCP/IP allows an unauthorized attacker to execute code over a network.

CVE-2026-62790
HIGH 8.8

Heap-based buffer overflow in Windows SMB Server allows an authorized attacker to execute code over a network.

CVE-2026-62788
HIGH 7.0

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

CVE-2026-62787
HIGH 7.5

Use after free in Windows DNS allows an authorized attacker to execute code over a network.

Gérez votre parc avec Appaloosa

Appaloosa pousse mises à jour d'OS, apps et politiques sur vos appareils Windows, macOS, iOS et Android depuis une seule console.

Découvrir le MDM Appaloosa