KEV CISA
Vulnérabilités activement exploitées (KEV CISA)
213 entrées
Tri chronologique : du plus récent au plus ancien. Pour prioriser, utilise les filtres KEV / sévérité ci-dessus.
| CVE |
|---|
|
CVE-2020-0796
CRITICAL 10.0
KEV
Réseau
A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol handles certain requests, aka 'Windows S… |
|
CVE-2020-0787
HIGH 7.8
KEV
Local
An elevation of privilege vulnerability exists when the Windows Background Intelligent Transfer Service (BITS) improperly handles symbolic links, aka 'Windows … |
|
CVE-2019-17026
HIGH 8.8
KEV
Réseau 1 apps
Incorrect alias information in IonMonkey JIT compiler for setting array elements could lead to a type confusion. We are aware of targeted attacks in the wild a… |
|
CVE-2020-0683
HIGH 7.0
KEV
Windows Installer Elevation of Privilege Vulnerability |
|
CVE-2020-0638
HIGH 7.8
KEV
Local
An elevation of privilege vulnerability exists in the way the Update Notification Manager handles files.To exploit this vulnerability, an attacker would first … |
|
CVE-2020-0601
HIGH 8.1
KEV
Windows CryptoAPI Spoofing Vulnerability |
|
CVE-2019-1458
HIGH 7.8
KEV
Local
An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka 'Win32k Elevation of Privil… |
|
CVE-2019-1405
HIGH 7.8
KEV
Local
An elevation of privilege vulnerability exists when the Windows Universal Plug and Play (UPnP) service improperly allows COM object creation, aka 'Windows UPnP… |
|
CVE-2019-1385
HIGH 7.8
KEV
Local
An elevation of privilege vulnerability exists when the Windows AppX Deployment Extensions improperly performs privilege management, resulting in access to sys… |
|
CVE-2019-1388
HIGH 7.8
KEV
Windows Certificate Dialog Elevation of Privilege Vulnerability |
|
CVE-2019-1322
HIGH 7.0
KEV
Microsoft Windows Elevation of Privilege Vulnerability |
|
CVE-2019-1315
HIGH 7.8
KEV
Windows Error Reporting Manager Elevation of Privilege Vulnerability |
|
CVE-2019-1253
HIGH 7.8
KEV
Windows Elevation of Privilege Vulnerability |
|
CVE-2019-1215
HIGH 7.8
KEV
Windows Elevation of Privilege Vulnerability |
|
CVE-2019-1214
HIGH 7.8
KEV
Windows Common Log File System Driver Elevation of Privilege Vulnerability |
|
CVE-2019-11708
CRITICAL 10.0
KEV
Réseau 1 apps
Insufficient vetting of parameters passed with the Prompt:Open IPC message between child and parent processes can result in the non-sandboxed parent process op… |
|
CVE-2019-11707
HIGH 8.8
KEV
Réseau 1 apps
A type confusion vulnerability can occur when manipulating JavaScript objects due to issues in Array.pop. This can allow for an exploitable crash. We are aware… |
|
CVE-2019-1130
HIGH 7.8
KEV
Local
An elevation of privilege vulnerability exists when Windows AppX Deployment Service (AppXSVC) improperly handles hard links, aka 'Windows Elevation of Privileg… |
|
CVE-2019-1129
HIGH 7.8
KEV
Windows Elevation of Privilege Vulnerability |
|
CVE-2019-0880
HIGH 7.0
KEV
Microsoft splwow64 Elevation of Privilege Vulnerability |
|
CVE-2019-1069
HIGH 7.8
KEV
Local
An elevation of privilege vulnerability exists in the way the Task Scheduler Service validates certain file operations. An attacker who successfully exploited … |
|
CVE-2019-1064
HIGH 7.8
KEV
Windows Elevation of Privilege Vulnerability |
|
CVE-2019-0903
CRITICAL 8.8
KEV
GDI+ Remote Code Execution Vulnerability |
|
CVE-2019-0863
HIGH 7.8
KEV
Windows Error Reporting Elevation of Privilege Vulnerability |
|
CVE-2019-0859
HIGH 7.8
KEV
Win32k Elevation of Privilege Vulnerability |
|
CVE-2019-0841
HIGH 6.8
KEV
Windows Elevation of Privilege Vulnerability |
|
CVE-2019-0803
HIGH 7.0
KEV
Win32k Elevation of Privilege Vulnerability |
|
CVE-2019-0797
HIGH 7.0
KEV
Win32k Elevation of Privilege Vulnerability |
|
CVE-2019-0703
HIGH 6.5
KEV
Windows SMB Information Disclosure Vulnerability |
|
CVE-2018-20250
HIGH 7.8
KEV
Local 1 apps
In WinRAR versions prior to and including 5.61, There is path traversal vulnerability when crafting the filename field of the ACE format (in UNACEV2.dll). When… |
|
CVE-2019-0543
HIGH 7.8
KEV
Microsoft Windows Elevation of Privilege Vulnerability |
|
CVE-2018-8639
HIGH 7.0
KEV
Win32k Elevation of Privilege Vulnerability |
|
CVE-2018-8611
HIGH 7.0
KEV
Windows Kernel Elevation of Privilege Vulnerability |
|
CVE-2018-8453
HIGH 7.0
KEV
Win32k Elevation of Privilege Vulnerability |
|
CVE-2018-8440
HIGH 7.8
KEV
Windows ALPC Elevation of Privilege Vulnerability |
|
CVE-2018-8414
HIGH 4.8
KEV
Windows Shell Remote Code Execution Vulnerability |
|
CVE-2018-8406
HIGH 7.0
KEV
DirectX Graphics Kernel Elevation of Privilege Vulnerability |
|
CVE-2018-8405
HIGH 7.0
KEV
DirectX Graphics Kernel Elevation of Privilege Vulnerability |
|
CVE-2016-9079
HIGH 7.5
KEV
Réseau 1 apps
A use-after-free vulnerability in SVG Animation has been discovered. An exploit built on this vulnerability has been discovered in the wild targeting Firefox a… |
|
CVE-2018-8174
CRITICAL 7.5
KEV
Windows VBScript Engine Remote Code Execution Vulnerability |
|
CVE-2018-0824
HIGH 7.5
KEV
Microsoft COM for Windows Remote Code Execution Vulnerability |
|
CVE-2017-8543
CRITICAL 8.1
KEV
Windows Search Remote Code Execution Vulnerability |
|
CVE-2017-8464
CRITICAL 7.5
KEV
LNK Remote Code Execution Vulnerability |
|
CVE-2017-0263
HIGH 7.8
KEV
Win32k Elevation of Privilege Vulnerability |
|
CVE-2017-0213
HIGH 6.7
KEV
Windows COM Elevation of Privilege Vulnerability |
|
CVE-2017-0148
CRITICAL 8.1
KEV
Windows SMB Remote Code Execution Vulnerability |
|
CVE-2017-0147
HIGH 8.1
KEV
Windows SMB Information Disclosure Vulnerability |
|
CVE-2017-0146
CRITICAL 8.1
KEV
Windows SMB Remote Code Execution Vulnerability |
|
CVE-2017-0145
CRITICAL 8.1
KEV
Windows SMB Remote Code Execution Vulnerability |
|
CVE-2017-0144
CRITICAL 8.1
KEV
Windows SMB Remote Code Execution Vulnerability |