CVE & Exploit Intelligence Database

Updated 2h ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

338,223 CVEs tracked 53,283 with exploits 4,731 exploited in wild 1,542 CISA KEV 3,930 Nuclei templates 37,826 vendors 42,577 researchers
4,085 results Clear all
CVE-2016-0733 9.8 CRITICAL EPSS 0.02
Apache Ranger <0.5.1 - Auth Bypass
The Admin UI in Apache Ranger before 0.5.1 does not properly handle authentication requests that lack a password, which allows remote attackers to bypass authentication by leveraging knowledge of a valid username.
CWE-287 Apr 12, 2016
CVE-2016-2245 9.8 CRITICAL EPSS 0.14
HP Support Assistant < 8.1.40.3 - Authentication Bypass
HP Support Assistant before 8.1.52.1 allows remote attackers to bypass authentication via unspecified vectors.
CWE-287 Mar 19, 2016
CVE-2016-1356 3.7 LOW EPSS 0.00
Cisco FireSIGHT System Software 6.1.0 - Info Disclosure
Cisco FireSIGHT System Software 6.1.0 does not use a constant-time algorithm for verifying credentials, which makes it easier for remote attackers to enumerate valid usernames by measuring timing differences, aka Bug ID CSCuy41615.
CWE-287 Mar 03, 2016
CVE-2016-1329 9.8 CRITICAL EPSS 0.02
Cisco NX-OS <6.0(2)U6(5)-<6.0(2)A7(1) - Privilege Escalation
Cisco NX-OS 6.0(2)U6(1) through 6.0(2)U6(5) on Nexus 3000 devices and 6.0(2)A6(1) through 6.0(2)A6(5) and 6.0(2)A7(1) on Nexus 3500 devices has hardcoded credentials, which allows remote attackers to obtain root privileges via a (1) TELNET or (2) SSH session, aka Bug ID CSCuy25800.
CWE-287 Mar 03, 2016
CVE-2016-1307 5.4 MEDIUM EPSS 0.00
Cisco Finesse Desktop <11.0.1 - Auth Bypass
The Openfire server in Cisco Finesse Desktop 10.5(1) and 11.0(1) and Unified Contact Center Express 10.6(1) has a hardcoded account, which makes it easier for remote attackers to obtain access via an XMPP session, aka Bug ID CSCuw79085.
CWE-287 Feb 07, 2016
CVE-2015-7914 8.1 HIGH EPSS 0.01
Sauter EY-WS505F0x0 moduWeb Vision <1.6.0 - Auth Bypass
Sauter EY-WS505F0x0 moduWeb Vision before 1.6.0 allows remote attackers to bypass authentication by leveraging knowledge of a password hash without knowledge of the associated password.
CWE-287 Feb 06, 2016
CVE-2015-8269 7.5 HIGH EPSS 0.01
Fisher-Price Smart Toy Bear - Info Disclosure
The API on Fisher-Price Smart Toy Bear devices allows remote attackers to obtain sensitive information or modify data by leveraging presence in an 802.11 network's coverage area and entering an account number.
CWE-287 Feb 04, 2016
CVE-2016-0755 7.3 HIGH EPSS 0.00
libcurl <7.47.0 - Open Redirect
The ConnectionExists function in lib/url.c in libcurl before 7.47.0 does not properly re-use NTLM-authenticated proxy connections, which might allow remote attackers to authenticate as other users via a request, a similar issue to CVE-2014-0015.
CWE-287 Jan 29, 2016
CVE-2015-7521 8.3 HIGH EPSS 0.00
Apache Hive <1.3 - Auth Bypass
The authorization framework in Apache Hive 1.0.0, 1.0.1, 1.1.0, 1.1.1, 1.2.0 and 1.2.1, on clusters protected by Ranger and SqlStdHiveAuthorization, allows attackers to bypass intended parent table access restrictions via unspecified partition-level operations.
CWE-287 Jan 29, 2016
CVE-2015-7974 7.7 HIGH EPSS 0.08
NTP <4.2.8p6-4.3.90 - Privilege Escalation
NTP 4.x before 4.2.8p6 and 4.3.x before 4.3.90 do not verify peer associations of symmetric keys when authenticating packets, which might allow remote attackers to conduct impersonation attacks via an arbitrary trusted key, aka a "skeleton key."
CWE-287 Jan 26, 2016
CVE-2015-6314 9.8 CRITICAL EPSS 0.01
Cisco Wireless Lan Controller Software - Authentication Bypass
Cisco Wireless LAN Controller (WLC) devices with software 7.6.x, 8.0 before 8.0.121.0, and 8.1 before 8.1.131.0 allow remote attackers to change configuration settings via unspecified vectors, aka Bug ID CSCuw06153.
CWE-287 Jan 15, 2016
CVE-2015-7938 9.8 CRITICAL EPSS 0.01
Advantech EKI-132x <2015-12-31 - Auth Bypass
Advantech EKI-132x devices with firmware before 2015-12-31 allow remote attackers to bypass authentication via unspecified vectors.
CWE-287 Jan 09, 2016
CVE-2015-6480 8.3 HIGH EPSS 0.00
Moxa Oncell Central Manager < 2.0 - Authentication Bypass
The MessageBrokerServlet servlet in Moxa OnCell Central Manager before 2.2 does not require authentication, which allows remote attackers to obtain administrative access via a command, as demonstrated by the addUserAndGroup action.
CWE-287 Dec 21, 2015
CVE-2015-1772 7.3 HIGH EPSS 0.00
IBM Infosphere Biginsights < 1.0.1 - Authentication Bypass
The LDAP implementation in HiveServer2 in Apache Hive before 1.0.1 and 1.1.x before 1.1.1, as used in IBM InfoSphere BigInsights 3.0, 3.0.0.1, and 3.0.0.2 and other products, mishandles simple unauthenticated and anonymous bind configurations, which allows remote attackers to bypass authentication via a crafted LDAP request.
CWE-287 Dec 21, 2015
CVE-2015-7755 9.8 CRITICAL KEV 3 PoCs Analysis EPSS 0.86
Juniper ScreenOS <6.3.0r21 - RCE
Juniper ScreenOS 6.2.0r15 through 6.2.0r18, 6.3.0r12 before 6.3.0r12b, 6.3.0r13 before 6.3.0r13b, 6.3.0r14 before 6.3.0r14b, 6.3.0r15 before 6.3.0r15b, 6.3.0r16 before 6.3.0r16b, 6.3.0r17 before 6.3.0r17b, 6.3.0r18 before 6.3.0r18b, 6.3.0r19 before 6.3.0r19b, and 6.3.0r20 before 6.3.0r21 allows remote attackers to obtain administrative access by entering an unspecified password during a (1) SSH or (2) TELNET session.
CWE-287 Dec 19, 2015
CVE-2015-6401 1 PoC Analysis EPSS 0.08
Cisco Epc3928 Docsis 3.0 8x4 Wireless... - Authentication Bypass
Cisco EPC3928 devices with EDVA 5.5.10, 5.5.11, and 5.7.1 allow remote attackers to bypass an intended authentication requirement and execute unspecified administrative functions via a crafted HTTP request, aka Bug ID CSCux24941.
CWE-287 Dec 14, 2015
CVE-2015-6389 EPSS 0.01
Cisco Prime Collaboration Assurance - Authentication Bypass
Cisco Prime Collaboration Assurance before 11.0 has a hardcoded cmuser account, which allows remote attackers to obtain access by establishing an SSH session and leveraging knowledge of this account's password, aka Bug ID CSCus62707.
CWE-287 Dec 13, 2015
CVE-2015-7285 EPSS 0.01
CSL Dualcom Gprs Cs2300-r Firmware - Authentication Bypass
CSL DualCom GPRS CS2300-R devices with firmware 1.25 through 3.53 do not require authentication from Alarm Receiving Center (ARC) servers, which allows man-in-the-middle attackers to bypass intended access restrictions via a spoofed HSxx response.
CWE-287 Nov 25, 2015
CVE-2015-7361 EPSS 0.01
Fortinet Fortios - Authentication Bypass
FortiOS 5.2.3, when configured to use High Availability (HA) and the dedicated management interface is enabled, does not require authentication for access to the ZebOS shell on the HA dedicated management interface, which allows remote attackers to obtain shell access via unspecified vectors.
CWE-287 Oct 15, 2015
CVE-2015-5649 EPSS 0.00
Cybozu Garoon <4.0.3 - Auth Bypass
Cybozu Garoon 3.x through 3.7.5 and 4.x through 4.0.3 mishandles authentication requests, which allows remote authenticated users to conduct LDAP injection attacks, and consequently bypass intended login restrictions or obtain sensitive information, by leveraging certain group-administration privileges.
CWE-287 Oct 08, 2015