Arsenal public
Exploits
868 CVE indexées ont un exploit public prêt à l'emploi, dont 108 au KEV CISA et 326 touchant une app suivie.
- CVE avec exploit
- 868
- Exploits recensés
- 1 031
- Au KEV CISA
- 108
- Sur le parc suivi
- 326
| CVE | Sévérité | Sources | EPSS | Apps |
|---|---|---|---|---|
|
CVE-2018-0774
Microsoft Edge in Windows 10 1709 allows an attacker to execute arbitrary code in the context of the current user, due to how the… |
HIGH | ExploitDB | 55% | |
|
CVE-2018-0775
Microsoft Edge in Windows 10 1709 allows an attacker to execute arbitrary code in the context of the current user, due to how the… |
HIGH | ExploitDB | 55% | |
|
CVE-2017-8601
Microsoft Edge in Microsoft Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 allow an attacker to execute arbitrary… |
HIGH | ExploitDB | 55% | |
|
CVE-2017-8548
Microsoft Edge in Microsoft Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 allows an attacker to obtain informati… |
HIGH | ExploitDB | 55% | |
|
CVE-2021-23017
A security issue in nginx resolver was identified which might allow an attacker who is able to forge UDP packets from the DNS ser… |
HIGH | ExploitDB | 53% | — |
|
CVE-2019-0541
KEV
MSHTML Engine Remote Code Execution Vulnerability |
HIGH | ExploitDB | 53% | — |
|
CVE-2018-8617
A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft E… |
HIGH | ExploitDB | 53% | |
|
CVE-2019-0808
KEV
Win32k Elevation of Privilege Vulnerability |
HIGH | ExploitDB | 53% | — |
|
CVE-2018-8145
An information disclosure vulnerability exists when Chakra improperly discloses the contents of its memory, which could provide a… |
HIGH | ExploitDB | 53% | |
|
CVE-2016-7194
The Chakra JavaScript engine in Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (me… |
HIGH | ExploitDB | 53% | |
|
CVE-2016-3222
Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted w… |
HIGH | ExploitDB | 52% | |
|
CVE-2017-11811
ChakraCore and Microsoft Edge in Microsoft Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an attacker to execu… |
HIGH | ExploitDB | 52% | |
|
CVE-2017-11909
ChakraCore and Windows 10 1511, 1607, 1703, 1709, and Windows Server 2016 allows an attacker to execute arbitrary code in the con… |
HIGH | ExploitDB | 52% | |
|
CVE-2017-11911
ChakraCore and Windows 10 1511, 1607, 1703, 1709, and Windows Server 2016 allows an attacker to execute arbitrary code in the con… |
HIGH | ExploitDB | 52% | |
|
CVE-2017-11764
Microsoft Edge in Microsoft Windows 10 1607, 1703, and Windows Server 2016 allows an attacker to execute arbitrary code in the co… |
HIGH | ExploitDB | 52% | |
|
CVE-2018-0935
Scripting Engine Memory Corruption Vulnerability |
HIGH | ExploitDB | 51% | — |
|
CVE-2019-0768
Internet Explorer Security Feature Bypass Vulnerability |
HIGH | ExploitDB | 51% | — |
|
CVE-2017-11799
ChakraCore and Microsoft Edge in Microsoft Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an attacker to execu… |
HIGH | ExploitDB | 50% | |
|
CVE-2017-11861
Microsoft Edge in Windows 10 1607, 1703, 1709, Windows Server 2016 and Windows Server, version 1709 allows an attacker to gain th… |
HIGH | ExploitDB | 50% | |
|
CVE-2026-23918
Double Free and possible RCE vulnerability in Apache HTTP Server with the HTTP/2 protocol. This issue affects Apache HTTP Server… |
HIGH | ExploitDB | 50% | |
|
CVE-2018-0834
Microsoft Edge and ChakraCore in Microsoft Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allows remote code ex… |
HIGH | ExploitDB | 49% | |
|
CVE-2017-11839
Microsoft Edge in Windows 10 Gold, 1511, 1607, 1703, 1709, Windows Server 2016 and Windows Server, version 1709 allows an attacke… |
HIGH | ExploitDB | 49% | |
|
CVE-2018-0840
Internet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 and… |
HIGH | ExploitDB | 48% | |
|
CVE-2017-11914
ChakraCore and Microsoft Edge in Windows 10 1511, 1607, 1703, 1709, and Windows Server 2016 allows an attacker to gain the same u… |
HIGH | ExploitDB | 48% | |
|
CVE-2017-11918
ChakraCore and Microsoft Edge in Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allows an attacker to gain the … |
HIGH | ExploitDB | 48% | |
|
CVE-2016-0199
Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory c… |
HIGH | ExploitDB | 48% | — |
|
CVE-2018-0946
A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Microsoft Edge, ak… |
HIGH | ExploitDB | 47% | |
|
CVE-2019-17026
KEV
Incorrect alias information in IonMonkey JIT compiler for setting array elements could lead to a type confusion. We are aware of … |
HIGH | ExploitDB | 46% | |
|
CVE-2018-8133
A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft E… |
HIGH | ExploitDB | 46% | |
|
CVE-2017-11840
ChakraCore and Microsoft Edge in Windows 10 Gold, 1511, 1607, 1703, 1709, Windows Server 2016 and Windows Server, version 1709 al… |
HIGH | ExploitDB | 46% | |
|
CVE-2017-11841
ChakraCore and Microsoft Edge in Windows 10 Gold, 1511, 1607, 1703, 1709, Windows Server 2016 and Windows Server, version 1709 al… |
HIGH | ExploitDB | 46% | |
|
CVE-2017-11870
ChakraCore and Microsoft Edge in Windows 10 1703, 1709, and Windows Server, version 1709 allows an attacker to gain the same user… |
HIGH | ExploitDB | 46% | |
|
CVE-2019-0803
KEV
Win32k Elevation of Privilege Vulnerability |
HIGH | ExploitDB | 45% | |
|
CVE-2019-11932
A double free vulnerability in the DDGifSlurp function in decoding.c in the android-gif-drawable library before version 1.2.18, a… |
HIGH | ExploitDB | 45% | |
|
CVE-2017-8635
Microsoft browsers in Microsoft Windows 7 SP1, Windows Server 2008 R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 an… |
HIGH | ExploitDB | 44% | |
|
CVE-2016-3235
KEV
Microsoft Visio 2007 SP3, Visio 2010 SP2, Visio 2013 SP1, Visio 2016, Visio Viewer 2007 SP3, and Visio Viewer 2010 mishandle libr… |
HIGH | ExploitDB | 43% | — |
|
CVE-2017-8657
Microsoft Edge in Microsoft Windows 10 1511, 1607, 1703, and Windows Server 2016 allows an attacker to execute arbitrary code in … |
HIGH | ExploitDB | 43% | |
|
CVE-2016-7189
The Chakra JavaScript engine in Microsoft Edge allows remote attackers to execute arbitrary code via a crafted web site, aka "Scr… |
HIGH | ExploitDB | 42% | |
|
CVE-2018-0866
Scripting Engine Memory Corruption Vulnerability |
HIGH | ExploitDB | 42% | — |
|
CVE-2019-0841
KEV
Windows Elevation of Privilege Vulnerability |
HIGH | ExploitDB | 41% | |
|
CVE-2017-8734
Microsoft Edge in Microsoft Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an attacker to execute arbitrary co… |
HIGH | ExploitDB | 41% | |
|
CVE-2023-29336
KEV
Win32k Elevation of Privilege Vulnerability |
HIGH | ExploitDB | 41% | |
|
CVE-2016-0111
Microsoft Internet Explorer 9 through 11 and Microsoft Edge allow remote attackers to execute arbitrary code or cause a denial of… |
HIGH | ExploitDB | 41% | |
|
CVE-2017-8496
Microsoft Edge in Windows 10 1607 and Windows Server 2016 allows an attacker to execute arbitrary code in the context of the curr… |
HIGH | ExploitDB | 41% | |
|
CVE-2018-8619
Internet Explorer Remote Code Execution Vulnerability |
HIGH | ExploitDB | 41% | — |
|
CVE-2016-3313
Microsoft Office Memory Corruption Vulnerability |
HIGH | ExploitDB | 40% | — |
|
CVE-2018-8625
Windows VBScript Engine Remote Code Execution Vulnerability |
HIGH | ExploitDB | 40% | — |
|
CVE-2017-11885
Windows RRAS Service Remote Code Execution Vulnerability |
HIGH | ExploitDB | 39% | |
|
CVE-2017-8731
Microsoft Edge in Microsoft Windows 10 1607 and Windows Server 2016 allows an attacker to execute arbitrary code in the context o… |
HIGH | ExploitDB | 39% | |
|
CVE-2017-0061
Microsoft Color Management Information Disclosure Vulnerability |
HIGH | ExploitDB | 39% | — |
Exploits agrégés depuis ExploitDB, Nuclei, Metasploit et les PoC GitHub, mappés aux CVE que Scout indexe. À des fins de recherche défensive et de test d'exposition uniquement.