Aller au contenu
Appaloosa Scout

KEV CISA

Vulnérabilités activement exploitées (KEV CISA)

213 entrées

Tri chronologique : du plus récent au plus ancien. Pour prioriser, utilise les filtres KEV / sévérité ci-dessus.

CVE
CVE-2020-0796
CRITICAL 10.0 KEV Réseau

A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol handles certain requests, aka 'Windows S…

CVE-2020-0787
HIGH 7.8 KEV Local

An elevation of privilege vulnerability exists when the Windows Background Intelligent Transfer Service (BITS) improperly handles symbolic links, aka 'Windows …

CVE-2019-17026
HIGH 8.8 KEV Réseau 1 apps

Incorrect alias information in IonMonkey JIT compiler for setting array elements could lead to a type confusion. We are aware of targeted attacks in the wild a…

CVE-2020-0683
HIGH 7.0 KEV

Windows Installer Elevation of Privilege Vulnerability

CVE-2020-0638
HIGH 7.8 KEV Local

An elevation of privilege vulnerability exists in the way the Update Notification Manager handles files.To exploit this vulnerability, an attacker would first …

CVE-2020-0601
HIGH 8.1 KEV

Windows CryptoAPI Spoofing Vulnerability

CVE-2019-1458
HIGH 7.8 KEV Local

An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka 'Win32k Elevation of Privil…

CVE-2019-1405
HIGH 7.8 KEV Local

An elevation of privilege vulnerability exists when the Windows Universal Plug and Play (UPnP) service improperly allows COM object creation, aka 'Windows UPnP…

CVE-2019-1385
HIGH 7.8 KEV Local

An elevation of privilege vulnerability exists when the Windows AppX Deployment Extensions improperly performs privilege management, resulting in access to sys…

CVE-2019-1388
HIGH 7.8 KEV

Windows Certificate Dialog Elevation of Privilege Vulnerability

CVE-2019-1322
HIGH 7.0 KEV

Microsoft Windows Elevation of Privilege Vulnerability

CVE-2019-1315
HIGH 7.8 KEV

Windows Error Reporting Manager Elevation of Privilege Vulnerability

CVE-2019-1253
HIGH 7.8 KEV

Windows Elevation of Privilege Vulnerability

CVE-2019-1215
HIGH 7.8 KEV

Windows Elevation of Privilege Vulnerability

CVE-2019-1214
HIGH 7.8 KEV

Windows Common Log File System Driver Elevation of Privilege Vulnerability

CVE-2019-11708
CRITICAL 10.0 KEV Réseau 1 apps

Insufficient vetting of parameters passed with the Prompt:Open IPC message between child and parent processes can result in the non-sandboxed parent process op…

CVE-2019-11707
HIGH 8.8 KEV Réseau 1 apps

A type confusion vulnerability can occur when manipulating JavaScript objects due to issues in Array.pop. This can allow for an exploitable crash. We are aware…

CVE-2019-1130
HIGH 7.8 KEV Local

An elevation of privilege vulnerability exists when Windows AppX Deployment Service (AppXSVC) improperly handles hard links, aka 'Windows Elevation of Privileg…

CVE-2019-1129
HIGH 7.8 KEV

Windows Elevation of Privilege Vulnerability

CVE-2019-0880
HIGH 7.0 KEV

Microsoft splwow64 Elevation of Privilege Vulnerability

CVE-2019-1069
HIGH 7.8 KEV Local

An elevation of privilege vulnerability exists in the way the Task Scheduler Service validates certain file operations. An attacker who successfully exploited …

CVE-2019-1064
HIGH 7.8 KEV

Windows Elevation of Privilege Vulnerability

CVE-2019-0903
CRITICAL 8.8 KEV

GDI+ Remote Code Execution Vulnerability

CVE-2019-0863
HIGH 7.8 KEV

Windows Error Reporting Elevation of Privilege Vulnerability

CVE-2019-0859
HIGH 7.8 KEV

Win32k Elevation of Privilege Vulnerability

CVE-2019-0841
HIGH 6.8 KEV

Windows Elevation of Privilege Vulnerability

CVE-2019-0803
HIGH 7.0 KEV

Win32k Elevation of Privilege Vulnerability

CVE-2019-0797
HIGH 7.0 KEV

Win32k Elevation of Privilege Vulnerability

CVE-2019-0703
HIGH 6.5 KEV

Windows SMB Information Disclosure Vulnerability

CVE-2018-20250
HIGH 7.8 KEV Local 1 apps

In WinRAR versions prior to and including 5.61, There is path traversal vulnerability when crafting the filename field of the ACE format (in UNACEV2.dll). When…

CVE-2019-0543
HIGH 7.8 KEV

Microsoft Windows Elevation of Privilege Vulnerability

CVE-2018-8639
HIGH 7.0 KEV

Win32k Elevation of Privilege Vulnerability

CVE-2018-8611
HIGH 7.0 KEV

Windows Kernel Elevation of Privilege Vulnerability

CVE-2018-8453
HIGH 7.0 KEV

Win32k Elevation of Privilege Vulnerability

CVE-2018-8440
HIGH 7.8 KEV

Windows ALPC Elevation of Privilege Vulnerability

CVE-2018-8414
HIGH 4.8 KEV

Windows Shell Remote Code Execution Vulnerability

CVE-2018-8406
HIGH 7.0 KEV

DirectX Graphics Kernel Elevation of Privilege Vulnerability

CVE-2018-8405
HIGH 7.0 KEV

DirectX Graphics Kernel Elevation of Privilege Vulnerability

CVE-2016-9079
HIGH 7.5 KEV Réseau 1 apps

A use-after-free vulnerability in SVG Animation has been discovered. An exploit built on this vulnerability has been discovered in the wild targeting Firefox a…

CVE-2018-8174
CRITICAL 7.5 KEV

Windows VBScript Engine Remote Code Execution Vulnerability

CVE-2018-0824
HIGH 7.5 KEV

Microsoft COM for Windows Remote Code Execution Vulnerability

CVE-2017-8543
CRITICAL 8.1 KEV

Windows Search Remote Code Execution Vulnerability

CVE-2017-8464
CRITICAL 7.5 KEV

LNK Remote Code Execution Vulnerability

CVE-2017-0263
HIGH 7.8 KEV

Win32k Elevation of Privilege Vulnerability

CVE-2017-0213
HIGH 6.7 KEV

Windows COM Elevation of Privilege Vulnerability

CVE-2017-0148
CRITICAL 8.1 KEV

Windows SMB Remote Code Execution Vulnerability

CVE-2017-0147
HIGH 8.1 KEV

Windows SMB Information Disclosure Vulnerability

CVE-2017-0146
CRITICAL 8.1 KEV

Windows SMB Remote Code Execution Vulnerability

CVE-2017-0145
CRITICAL 8.1 KEV

Windows SMB Remote Code Execution Vulnerability

CVE-2017-0144
CRITICAL 8.1 KEV

Windows SMB Remote Code Execution Vulnerability