CVE & Exploit Intelligence Database

Updated 4h ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

337,847 CVEs tracked 53,242 with exploits 4,725 exploited in wild 1,540 CISA KEV 3,918 Nuclei templates 37,802 vendors 42,493 researchers
2,165 results Clear all
CVE-2003-1562 EPSS 0.01
Openbsd Openssh - Race Condition
sshd in OpenSSH 3.6.1p2 and earlier, when PermitRootLogin is disabled and using PAM keyboard-interactive authentication, does not insert a delay after a root login attempt with the correct password, which makes it easier for remote attackers to use timing differences to determine if the password step of a multi-step authentication is successful, a different vulnerability than CVE-2003-0190.
CWE-362 Dec 31, 2003
CVE-2002-2374 EPSS 0.00
SUN Patchpro - Race Condition
Unspecified vulnerability in pprosetup in Sun PatchPro 2.0 has unknown impact and attack vectors related to "unsafe use of temporary files."
CWE-362 Dec 31, 2002
CVE-2002-2244 EPSS 0.00
Akfingerd - Race Condition
Akfingerd 0.5 and earlier versions allow local users to cause a denial of service (crash) via a .plan with a symlink to /dev/urandom or other device, then disconnecting while data is being transferred, which causes a SIGPIPE error that Akfingerd cannot handle.
CWE-362 Dec 31, 2002
CVE-2000-0864 1 PoC Analysis EPSS 0.00
Gnome Esound - Race Condition
Race condition in the creation of a Unix domain socket in GNOME esound 0.2.19 and earlier allows a local user to change the permissions of arbitrary files and directories, and gain additional privileges, via a symlink attack.
CWE-362 Nov 14, 2000
CVE-1999-0861 EPSS 0.05
Microsoft Commercial Internet System - Race Condition
Race condition in the SSL ISAPI filter in IIS and other servers may leak information in plaintext.
CWE-362 Aug 11, 1999