Aller au contenu
Appaloosa Scout
Sélection de la langue
fr en

Arsenal public

Exploits

868 CVE indexées ont un exploit public prêt à l'emploi, dont 108 au KEV CISA et 326 touchant une app suivie.

CVE avec exploit
868
Exploits recensés
1 031
Au KEV CISA
108
Sur le parc suivi
326
CVE Sévérité Apps
CVE-2019-0708 KEV

Remote Desktop Services Remote Code Execution Vulnerability

CRITICAL
CVE-2021-34473 KEV

Microsoft Exchange Server Remote Code Execution Vulnerability

CRITICAL
CVE-2021-40438 KEV

A crafted request uri-path can cause mod_proxy to forward the request to an origin server choosen by the remote user. This issue …

CRITICAL
CVE-2021-44228 KEV

Apache Log4j2 2.0-beta9 through 2.15.0 (excluding security releases 2.12.2, 2.12.3, and 2.3.1) JNDI features used in configuratio…

CRITICAL
CVE-2025-53770 KEV

Deserialization of untrusted data in on-premises Microsoft SharePoint Server allows an unauthorized attacker to execute code over…

CRITICAL
CVE-2021-26855 KEV

Microsoft Exchange Server Remote Code Execution Vulnerability

CRITICAL
CVE-2024-4577 KEV

Argument Injection in PHP-CGI

CRITICAL
CVE-2023-29357 KEV

Microsoft SharePoint Server Elevation of Privilege Vulnerability

CRITICAL
CVE-2025-59287 KEV

Windows Server Update Service (WSUS) Remote Code Execution Vulnerability

CRITICAL
CVE-2017-0199 KEV

Microsoft Office/WordPad Remote Code Execution Vulnerability w/Windows

CRITICAL
CVE-2021-38647 KEV

Open Management Infrastructure (OMI) Remote Code Execution Vulnerability

CRITICAL
CVE-2019-0604 KEV

Microsoft SharePoint Remote Code Execution Vulnerability

CRITICAL
CVE-2014-0497 KEV

Integer underflow in Adobe Flash Player before 11.7.700.261 and 11.8.x through 12.0.x before 12.0.0.44 on Windows and Mac OS X, a…

CRITICAL
CVE-2020-0796 KEV

A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol handles ce…

CRITICAL
CVE-2020-1472 KEV

Netlogon Elevation of Privilege Vulnerability

CRITICAL
CVE-2017-0148 KEV

Windows SMB Remote Code Execution Vulnerability

CRITICAL
CVE-2020-0646 KEV

.NET Framework Remote Code Execution Injection Vulnerability

CRITICAL
CVE-2019-5544 KEV

Microsoft Security Update Guide entry — NVD enrichira.

CRITICAL
CVE-2020-1147 KEV

.NET Framework, SharePoint Server, and Visual Studio Remote Code Execution Vulnerability

CRITICAL
CVE-2017-0143 KEV

Windows SMB Remote Code Execution Vulnerability

CRITICAL
CVE-2025-12480 KEV

Triofox versions prior to 16.7.10368.56560, are vulnerable to an Improper Access Control flaw that allows access to initial setup…

CRITICAL
CVE-2017-8464 KEV

LNK Remote Code Execution Vulnerability

CRITICAL
CVE-2017-0146 KEV

Windows SMB Remote Code Execution Vulnerability

CRITICAL
CVE-2020-0674 KEV

Scripting Engine Memory Corruption Vulnerability

CRITICAL
CVE-2016-5195 KEV

Indexed via Android Security Bulletin — full NVD metadata pending.

CRITICAL
CVE-2010-3765 KEV

Mozilla Firefox 3.5.x through 3.5.14 and 3.6.x through 3.6.11, Thunderbird 3.1.6 before 3.1.6 and 3.0.x before 3.0.10, and SeaMon…

CRITICAL
CVE-2019-1429 KEV

Scripting Engine Memory Corruption Vulnerability

CRITICAL
CVE-2018-8298 KEV

Scripting Engine Memory Corruption Vulnerability

CRITICAL
CVE-2017-8540 KEV

Microsoft Malware Protection Engine Remote Code Execution Vulnerability

CRITICAL
CVE-2025-32463 KEV

Sudo before 1.9.17p1 allows local users to obtain root access

CRITICAL
CVE-2026-58644 KEV

Deserialization of untrusted data in Microsoft Office SharePoint allows an unauthorized attacker to execute code over a network.

CRITICAL
CVE-2019-11708 KEV

Insufficient vetting of parameters passed with the Prompt:Open IPC message between child and parent processes can result in the n…

CRITICAL
CVE-2025-14611 KEV

Gladinet CentreStack and Triofox prior to version 16.12.10420.56791 used hardcoded values for their implementation of the AES cry…

CRITICAL
CVE-2026-55040 KEV

Weak authentication in Microsoft Office SharePoint allows an unauthorized attacker to bypass a security feature over a network.

CRITICAL
CVE-2025-24085 KEV

A use after free issue was addressed with improved memory management. This issue is fixed in iOS 18.3 and iPadOS 18.3, iPadOS 17.…

CRITICAL
CVE-2023-44487 KEV

The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams …

HIGH
CVE-2021-41773 KEV

Path traversal and file disclosure vulnerability in Apache HTTP Server 2.4.49

HIGH
CVE-2020-0688 KEV

Microsoft Exchange Validation Key Remote Code Execution Vulnerability

HIGH
CVE-2017-11882 KEV

Microsoft Office Memory Corruption Vulnerability

HIGH
CVE-2021-27065 KEV

Microsoft Exchange Server Remote Code Execution Vulnerability

HIGH
CVE-2017-0147 KEV

Windows SMB Information Disclosure Vulnerability

HIGH
CVE-2017-0144 KEV

The SMBv1 server in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2…

HIGH
CVE-2020-0618 KEV

A remote code execution vulnerability exists in Microsoft SQL Server Reporting Services when it incorrectly handles page requests…

HIGH
CVE-2024-29059 KEV

.NET Framework Information Disclosure Vulnerability

HIGH
CVE-2021-33766 KEV

Microsoft Exchange Server Information Disclosure Vulnerability

HIGH
CVE-2018-20250 KEV

In WinRAR versions prior to and including 5.61, There is path traversal vulnerability when crafting the filename field of the ACE…

HIGH
CVE-2021-4034 KEV

A local privilege escalation vulnerability was found on polkit's pkexec utility. The pkexec application is a setuid tool designed…

HIGH
CVE-2016-0189 KEV

The Microsoft (1) JScript 5.8 and (2) VBScript 5.7 and 5.8 engines, as used in Internet Explorer 9 through 11 and other products,…

HIGH
CVE-2025-11371 KEV

In the default installation and configuration of Gladinet CentreStack and TrioFox, there is an unauthenticated Local File Inclusi…

HIGH
CVE-2023-41763 KEV

Skype for Business Elevation of Privilege Vulnerability

HIGH

Exploits agrégés depuis ExploitDB, Nuclei, Metasploit et les PoC GitHub, mappés aux CVE que Scout indexe. À des fins de recherche défensive et de test d'exposition uniquement.