Arsenal public
Exploits
868 CVE indexées ont un exploit public prêt à l'emploi, dont 108 au KEV CISA et 326 touchant une app suivie.
- CVE avec exploit
- 868
- Exploits recensés
- 1 031
- Au KEV CISA
- 108
- Sur le parc suivi
- 326
| CVE | Sévérité | Sources | EPSS | Apps |
|---|---|---|---|---|
|
CVE-2021-34473
KEV
Microsoft Exchange Server Remote Code Execution Vulnerability |
CRITICAL | Nuclei | 100% | — |
|
CVE-2021-40438
KEV
A crafted request uri-path can cause mod_proxy to forward the request to an origin server choosen by the remote user. This issue … |
CRITICAL | Nuclei | 100% | — |
|
CVE-2021-44228
KEV
Apache Log4j2 2.0-beta9 through 2.15.0 (excluding security releases 2.12.2, 2.12.3, and 2.3.1) JNDI features used in configuratio… |
CRITICAL | ExploitDB Nuclei | 100% | |
|
CVE-2025-53770
KEV
Deserialization of untrusted data in on-premises Microsoft SharePoint Server allows an unauthorized attacker to execute code over… |
CRITICAL | ExploitDB Nuclei | 100% | — |
|
CVE-2021-26855
KEV
Microsoft Exchange Server Remote Code Execution Vulnerability |
CRITICAL | ExploitDB Nuclei | 100% | — |
|
CVE-2024-4577
KEV
Argument Injection in PHP-CGI |
CRITICAL | ExploitDB Nuclei | 100% | — |
|
CVE-2023-29357
KEV
Microsoft SharePoint Server Elevation of Privilege Vulnerability |
CRITICAL | Nuclei | 100% | — |
|
CVE-2025-59287
KEV
Windows Server Update Service (WSUS) Remote Code Execution Vulnerability |
CRITICAL | Nuclei | 100% | |
|
CVE-2021-38647
KEV
Open Management Infrastructure (OMI) Remote Code Execution Vulnerability |
CRITICAL | Nuclei | 100% | — |
|
CVE-2020-0796
KEV
A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol handles ce… |
CRITICAL | ExploitDB Nuclei | 100% | |
|
CVE-2019-5544
KEV
Microsoft Security Update Guide entry — NVD enrichira. |
CRITICAL | Nuclei | 97% | — |
|
CVE-2025-12480
KEV
Triofox versions prior to 16.7.10368.56560, are vulnerable to an Improper Access Control flaw that allows access to initial setup… |
CRITICAL | Nuclei | 91% | — |
|
CVE-2026-58644
KEV
Deserialization of untrusted data in Microsoft Office SharePoint allows an unauthorized attacker to execute code over a network. |
CRITICAL | Nuclei | 61% | — |
|
CVE-2025-14611
KEV
Gladinet CentreStack and Triofox prior to version 16.12.10420.56791 used hardcoded values for their implementation of the AES cry… |
CRITICAL | Nuclei | 53% | — |
|
CVE-2026-55040
KEV
Weak authentication in Microsoft Office SharePoint allows an unauthorized attacker to bypass a security feature over a network. |
CRITICAL | Nuclei | 51% | — |
|
CVE-2021-41773
KEV
Path traversal and file disclosure vulnerability in Apache HTTP Server 2.4.49 |
HIGH | ExploitDB Nuclei | 100% | — |
|
CVE-2020-0618
KEV
A remote code execution vulnerability exists in Microsoft SQL Server Reporting Services when it incorrectly handles page requests… |
HIGH | ExploitDB Nuclei | 99% | — |
|
CVE-2024-29059
KEV
.NET Framework Information Disclosure Vulnerability |
HIGH | Nuclei | 99% | — |
|
CVE-2021-33766
KEV
Microsoft Exchange Server Information Disclosure Vulnerability |
HIGH | Nuclei | 98% | — |
|
CVE-2025-11371
KEV
In the default installation and configuration of Gladinet CentreStack and TrioFox, there is an unauthenticated Local File Inclusi… |
HIGH | Nuclei | 92% | — |
|
CVE-2023-41763
KEV
Skype for Business Elevation of Privilege Vulnerability |
HIGH | Nuclei | 90% | — |
|
CVE-2025-49706
KEV
Improper authentication in Microsoft Office SharePoint allows an unauthorized attacker to perform spoofing over a network. |
MEDIUM | Nuclei | 99% | — |
Exploits agrégés depuis ExploitDB, Nuclei, Metasploit et les PoC GitHub, mappés aux CVE que Scout indexe. À des fins de recherche défensive et de test d'exposition uniquement.