Arsenal public
Exploits
868 CVE indexées ont un exploit public prêt à l'emploi, dont 108 au KEV CISA et 326 touchant une app suivie.
- CVE avec exploit
- 868
- Exploits recensés
- 1 031
- Au KEV CISA
- 108
- Sur le parc suivi
- 326
| CVE | Sévérité | Sources | EPSS | Apps |
|---|---|---|---|---|
|
CVE-2019-1458
KEV
An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, a… |
HIGH | ExploitDB | 74% | |
|
CVE-2017-5715
Indexed via Android Security Bulletin — full NVD metadata pending. |
HIGH | ExploitDB | 74% | |
|
CVE-2018-8120
KEV
An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, a… |
HIGH | ExploitDB | 73% | — |
|
CVE-2018-0824
KEV
Microsoft COM for Windows Remote Code Execution Vulnerability |
HIGH | ExploitDB | 73% | |
|
CVE-2018-0758
Microsoft Edge in Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allows an attacker to execute arbitrary code i… |
HIGH | ExploitDB | 73% | |
|
CVE-2019-13720
Use after free in WebAudio in Google Chrome prior to 78.0.3904.87 allowed a remote attacker to potentially exploit heap corruptio… |
HIGH | ExploitDB | 73% | |
|
CVE-2025-6965
There exists a vulnerability in SQLite versions before 3.50.2 where the number of aggregate terms could exceed the number of colu… |
HIGH | ExploitDB | 73% | |
|
CVE-2019-2215
KEV
Indexed via Android Security Bulletin — full NVD metadata pending. |
HIGH | ExploitDB | 72% | |
|
CVE-2017-0038
Windows GDI Information Disclosure Vulnerability |
HIGH | ExploitDB | 72% | |
|
CVE-2016-7202
The scripting engines in Microsoft Internet Explorer 9 through 11 and Microsoft Edge allow remote attackers to execute arbitrary … |
HIGH | ExploitDB | 71% | |
|
CVE-2024-4367
A type check was missing when handling fonts in PDF.js, which would allow arbitrary JavaScript execution in the PDF.js context. T… |
HIGH | ExploitDB | 71% | |
|
CVE-2016-7241
Microsoft Internet Explorer 11 and Microsoft Edge allow remote attackers to execute arbitrary code or cause a denial of service (… |
HIGH | ExploitDB | 71% | |
|
CVE-2018-0769
Microsoft Edge in Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allows an attacker to execute arbitrary code i… |
HIGH | ExploitDB | 70% | |
|
CVE-2019-1184
Windows Elevation of Privilege Vulnerability |
HIGH | ExploitDB | 70% | |
|
CVE-2018-8453
KEV
An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, a… |
HIGH | ExploitDB | 70% | |
|
CVE-2016-0185
KEV
Media Center in Microsoft Windows Vista SP2, Windows 7 SP1, and Windows 8.1 allows remote attackers to execute arbitrary code via… |
HIGH | ExploitDB | 70% | — |
|
CVE-2018-0770
Microsoft Edge in Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allows an attacker to execute arbitrary code i… |
HIGH | ExploitDB | 70% | |
|
CVE-2018-0776
Microsoft Edge in Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allows an attacker to execute arbitrary code i… |
HIGH | ExploitDB | 70% | |
|
CVE-2018-0777
Microsoft Edge in Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allows an attacker to execute arbitrary code i… |
HIGH | ExploitDB | 70% | |
|
CVE-2013-1690
KEV
Mozilla Firefox before 22.0, Firefox ESR 17.x before 17.0.7, Thunderbird before 17.0.7, and Thunderbird ESR 17.x before 17.0.7 do… |
HIGH | ExploitDB | 69% | |
|
CVE-2016-7288
The scripting engines in Microsoft Edge allow remote attackers to execute arbitrary code or cause a denial of service (memory cor… |
HIGH | ExploitDB | 68% | |
|
CVE-2019-18426
KEV
A vulnerability in WhatsApp Desktop versions prior to 0.3.9309 when paired with WhatsApp for iPhone versions prior to 2.20.10 all… |
HIGH | ExploitDB | 68% | |
|
CVE-2017-0070
A remote code execution vulnerability exists in the way affected Microsoft scripting engines render when handling objects in memo… |
HIGH | ExploitDB | 68% | |
|
CVE-2016-7237
Local Security Authority Subsystem Service Denial of Service Vulnerability |
HIGH | ExploitDB | 67% | |
|
CVE-2011-0609
Unspecified vulnerability in Adobe Flash Player 10.2.154.13 and earlier on Windows, Mac OS X, Linux, and Solaris; 10.1.106.16 and… |
HIGH | ExploitDB | 67% | |
|
CVE-2016-7287
The scripting engines in Microsoft Internet Explorer 11 and Microsoft Edge allow remote attackers to execute arbitrary code or ca… |
HIGH | ExploitDB | 66% | |
|
CVE-2018-8229
A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft E… |
HIGH | ExploitDB | 66% | |
|
CVE-2025-55315
ASP.NET Security Feature Bypass Vulnerability |
HIGH | ExploitDB | 66% | — |
|
CVE-2017-8636
Microsoft browsers in Microsoft Windows 7 SP1, Windows Server 2008 R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 an… |
HIGH | ExploitDB | 65% | |
|
CVE-2016-3247
Microsoft Internet Explorer 11 and Microsoft Edge allow remote attackers to execute arbitrary code or cause a denial of service (… |
HIGH | ExploitDB | 65% | |
|
CVE-2016-7286
The scripting engines in Microsoft Edge allow remote attackers to execute arbitrary code or cause a denial of service (memory cor… |
HIGH | ExploitDB | 65% | |
|
CVE-2019-0568
A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft E… |
HIGH | ExploitDB | 65% | |
|
CVE-2018-8279
A remote code execution vulnerability exists when Microsoft Edge improperly accesses objects in memory, aka "Microsoft Edge Memor… |
HIGH | ExploitDB | 64% | |
|
CVE-2017-8729
Microsoft Edge in Microsoft Windows 10 1703 allows an attacker to execute arbitrary code in the context of the current user, due … |
HIGH | ExploitDB | 64% | |
|
CVE-2017-8740
Microsoft Edge in Microsoft Windows 10 1703 allows an attacker to execute arbitrary code in the context of the current user, due … |
HIGH | ExploitDB | 64% | |
|
CVE-2018-8466
A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft E… |
HIGH | ExploitDB | 64% | |
|
CVE-2018-8467
A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft E… |
HIGH | ExploitDB | 64% | |
|
CVE-2017-14496
Indexed via Android Security Bulletin — full NVD metadata pending. |
HIGH | ExploitDB | 63% | |
|
CVE-2016-0151
KEV
The Client-Server Run-time Subsystem (CSRSS) in Microsoft Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windo… |
HIGH | ExploitDB | 63% | |
|
CVE-2018-8353
Scripting Engine Memory Corruption Vulnerability |
HIGH | ExploitDB | 63% | — |
|
CVE-2017-8755
Microsoft Edge in Microsoft Windows 10 1511, 1607, 1703, and Windows Server 2016 allows an attacker to execute arbitrary code in … |
HIGH | ExploitDB | 63% | |
|
CVE-2018-8355
A remote code execution vulnerability exists in the way the scripting engine handles objects in memory in Microsoft browsers, aka… |
HIGH | ExploitDB | 63% | |
|
CVE-2018-8288
A remote code execution vulnerability exists in the way the scripting engine handles objects in memory in Microsoft browsers, aka… |
HIGH | ExploitDB | 62% | |
|
CVE-2018-8291
A remote code execution vulnerability exists in the way the scripting engine handles objects in memory in Microsoft browsers, aka… |
HIGH | ExploitDB | 62% | |
|
CVE-2017-0059
KEV
Microsoft Browser Information Disclosure Vulnerability |
HIGH | ExploitDB | 62% | — |
|
CVE-2018-0934
ChakraCore and Microsoft Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allows remote code execution, due to ho… |
HIGH | ExploitDB | 61% | |
|
CVE-2018-0953
A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Microsoft Edge, ak… |
HIGH | ExploitDB | 61% | |
|
CVE-2018-8139
A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Microsoft Edge, ak… |
HIGH | ExploitDB | 61% | |
|
CVE-2018-0933
ChakraCore and Microsoft Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allows remote code execution, due to ho… |
HIGH | ExploitDB | 61% | |
|
CVE-2018-0980
A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft E… |
HIGH | ExploitDB | 61% |
Exploits agrégés depuis ExploitDB, Nuclei, Metasploit et les PoC GitHub, mappés aux CVE que Scout indexe. À des fins de recherche défensive et de test d'exposition uniquement.