CVE & Exploit Intelligence Database

Updated 1h ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

338,223 CVEs tracked 53,280 with exploits 4,730 exploited in wild 1,542 CISA KEV 3,929 Nuclei templates 37,826 vendors 42,569 researchers
4,085 results Clear all
CVE-2012-2351 EPSS 0.00
Mahara <1.4.2 - Auth Bypass
The default configuration of the auth/saml plugin in Mahara before 1.4.2 sets the "Match username attribute to Remote username" option to false, which allows remote SAML IdP servers to spoof users of other SAML IdP servers by using the same internal username.
CWE-16 Jul 12, 2012
CVE-2012-0301 EPSS 0.01
Symantec Message Filter 6.3 - Session Fixation
Session fixation vulnerability in Brightmail Control Center in Symantec Message Filter 6.3 allows remote attackers to hijack web sessions via unspecified vectors.
CWE-287 Jul 05, 2012
CVE-2012-2281 EPSS 0.00
RSA Access Manager Agent - Authentication Bypass
EMC RSA Access Manager Server 6.x before 6.1 SP4 and RSA Access Manager Agent do not properly validate session tokens after a logout, which might allow remote attackers to conduct replay attacks via unspecified vectors.
CWE-287 Jul 05, 2012
CVE-2012-1123 EPSS 0.01
MantisBT <1.2.9 - Auth Bypass
The mci_check_login function in api/soap/mc_api.php in the SOAP API in MantisBT before 1.2.9 allows remote attackers to bypass authentication via a null password.
CWE-287 Jun 29, 2012
CVE-2012-2388 EPSS 0.01
strongSwan <4.6.3 - Auth Bypass
The GMP Plugin in strongSwan 4.2.0 through 4.6.3 allows remote attackers to bypass authentication via a (1) empty or (2) zeroed RSA signature, aka "RSA signature verification vulnerability."
CWE-287 Jun 27, 2012
CVE-2012-2122 6 PoCs Analysis NUCLEI EPSS 0.94
Oracle Mysql - Authentication Bypass
sql/password.c in Oracle MySQL 5.1.x before 5.1.63, 5.5.x before 5.5.24, and 5.6.x before 5.6.6, and MariaDB 5.1.x before 5.1.62, 5.2.x before 5.2.12, 5.3.x before 5.3.6, and 5.5.x before 5.5.23, when running in certain environments with certain implementations of the memcmp function, allows remote attackers to bypass authentication by repeatedly authenticating with the same incorrect password, which eventually causes a token comparison to succeed due to an improperly-checked return value.
CWE-287 Jun 26, 2012
CVE-2011-0011 EPSS 0.01
qemu-kvm <0.11.0 - Auth Bypass
qemu-kvm before 0.11.0 disables VNC authentication when the password is cleared, which allows remote attackers to bypass authentication and establish VNC sessions.
CWE-287 Jun 21, 2012
CVE-2012-0717 EPSS 0.00
IBM WebSphere App Server <7.0.0.23 - Auth Bypass
IBM WebSphere Application Server 7.0 before 7.0.0.23, when a certain SSLv2 configuration with client authentication is used, allows remote attackers to bypass X.509 client-certificate authentication via unspecified vectors.
CWE-287 Jun 20, 2012
CVE-2009-0695 3 PoCs Analysis EPSS 0.64
Wyse Device Manager <4.7.x - RCE
hagent.exe in Wyse Device Manager (WDM) 4.7.x does not require authentication for commands, which allows remote attackers to obtain management access via a crafted query, as demonstrated by a V52 query that triggers a power-off action.
CWE-287 Jun 19, 2012
CVE-2012-1145 EPSS 0.02
Redhat Satellite - Authentication Bypass
spacewalk-backend in Red Hat Network Satellite 5.4 on Red Hat Enterprise Linux 6 does not properly authorize or authenticate uploads to the NULL organization when mod_wsgi is used, which allows remote attackers to cause a denial of service (/var partition disk consumption and failed updates) via a large number of package uploads.
CWE-287 Jun 16, 2012
CVE-2012-2606 EPSS 0.06
Bradford Network Sentry <5.3.3 - Info Disclosure
The agent in Bradford Network Sentry before 5.3.3 does not require authentication for messages, which allows remote attackers to trigger the display of arbitrary text on a workstation via a crafted packet to UDP port 4567, as demonstrated by a replay attack.
CWE-287 Jun 13, 2012
CVE-2012-0944 EPSS 0.00
Aptdaemon <0.43 - RCE
Aptdaemon 0.43 and earlier in Ubuntu 11.04, 11.10, and 12.04 LTS does not authenticate packages when the transaction is not simulated, which allows remote attackers to install arbitrary packages via a man-in-the-middle attack.
CWE-287 Jun 04, 2012
CVE-2011-5090 EPSS 0.01
Grboard - Authentication Bypass
GR Board (aka grboard) 1.8.6.5 Community Edition does not require authentication for certain database actions, which allows remote attackers to modify or delete data via a request to (1) mod_rewrite.php, (2) comment_write_ok.php, (3) poll/index.php, (4) update/index.php, (5) trackback.php, or (6) an arbitrary poll.php script under theme/.
CWE-287 May 24, 2012
CVE-2012-2562 EPSS 0.02
Xelex MobileTrack <2.3.7 - SSRF
The Xelex MobileTrack application 2.3.7 and earlier for Android does not verify the origin of SMS commands, which allows remote attackers to execute a (1) LOCATE, (2) TRACK, (3) UPDATECFG, (4) UPDATEACCT, (5) STAT, (6) TERM, or (7) WIPE command via an SMS message.
CWE-287 May 22, 2012
CVE-2012-0675 EPSS 0.01
Apple Mac OS X <10.7.4 - Info Disclosure
Time Machine in Apple Mac OS X before 10.7.4 does not require continued use of SRP-based authentication after this authentication method is first used, which allows remote attackers to read Time Capsule credentials by spoofing the backup volume.
CWE-287 May 11, 2012
CVE-2011-3620 EPSS 0.03
Apache Qpid 0.12 - Auth Bypass
Apache Qpid 0.12 does not properly verify credentials during the joining of a cluster, which allows remote attackers to obtain access to the messaging functionality and job functionality of a cluster by leveraging knowledge of a cluster-username.
CWE-287 May 03, 2012
CVE-2011-4022 EPSS 0.01
Cisco IPS 7.0-7.1 - DoS
The sensor in Cisco Intrusion Prevention System (IPS) 7.0 and 7.1 allows remote attackers to cause a denial of service (file-handle exhaustion and mainApp hang) by making authentication attempts that exceed the configured limit, aka Bug ID CSCto51204.
CWE-287 May 03, 2012
CVE-2012-0335 EPSS 0.00
Cisco ASA <8.4 - Info Disclosure
Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 7.2 through 8.4 do not properly perform proxy authentication during attempts to cut through a firewall, which allows remote attackers to obtain sensitive information via a connection attempt, aka Bug ID CSCtx42746.
CWE-287 May 02, 2012
CVE-2012-0333 EPSS 0.00
Cisco SPA 500 - RCE
Cisco Small Business IP phones with SPA 500 series firmware 7.4.9 and earlier do not require authentication for Push XML requests, which allows remote attackers to make telephone calls via an XML document, aka Bug ID CSCts08768.
CWE-287 May 02, 2012
CVE-2012-2414 EPSS 0.04
Asterisk Open Source <10.3.1 - Command Injection
main/manager.c in the Manager Interface in Asterisk Open Source 1.6.2.x before 1.6.2.24, 1.8.x before 1.8.11.1, and 10.x before 10.3.1 and Asterisk Business Edition C.3.x before C.3.7.4 does not properly enforce System class authorization requirements, which allows remote authenticated users to execute arbitrary commands via (1) the originate action in the MixMonitor application, (2) the SHELL and EVAL functions in the GetVar manager action, or (3) the SHELL and EVAL functions in the Status manager action.
CWE-287 Apr 30, 2012