Exploit Intelligence Platform

Updated 1h ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

339,380 CVEs tracked 53,349 with exploits 4,748 exploited in wild 1,551 CISA KEV 3,945 Nuclei templates 49,139 vendors 42,810 researchers
42,578 results Clear all
CVE-2013-0933 EPSS 0.00
EMC RSA Archer <5.x - XSS
Multiple cross-site scripting (XSS) vulnerabilities in EMC RSA Archer 5.x before GRC 5.3SP1, and Archer Smart Suite Framework 4.x, allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.
CWE-79 May 07, 2013
CVE-2013-3267 EPSS 0.00
Joomla! <2.5.10, <3.0.4 - XSS
Cross-site scripting (XSS) vulnerability in the highlighter plugin in Joomla! 2.5.x before 2.5.10 and 3.0.x before 3.0.4 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
CWE-79 May 03, 2013
CVE-2013-3059 EPSS 0.00
Joomla! <2.5.10, <3.0.4 - XSS
Cross-site scripting (XSS) vulnerability in the Voting plugin in Joomla! 2.5.x before 2.5.10 and 3.0.x before 3.0.4 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
CWE-79 May 03, 2013
CVE-2013-3058 EPSS 0.00
Joomla! <2.5.10, <3.0.4 - XSS
Cross-site scripting (XSS) vulnerability in Joomla! 2.5.x before 2.5.10 and 3.0.x before 3.0.4 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
CWE-79 May 03, 2013
CVE-2013-0582 EPSS 0.00
IBM Tivoli Federated Identity Manager - XSS
Cross-site scripting (XSS) vulnerability in IBM Tivoli Federated Identity Manager (TFIM) 6.2.0 before 6.2.0.12, 6.2.1 before 6.2.1.5, and 6.2.2 before 6.2.2.4 and Tivoli Federated Identity Manager Business Gateway (TFIMBG) 6.2.0 before 6.2.0.12 and 6.2.1 before 6.2.1.5 allows remote attackers to inject arbitrary web script or HTML via a crafted URL that triggers a SAML 2.0 response.
CWE-79 May 02, 2013
CVE-2013-0535 EPSS 0.00
IBM Sametime <8.5.2.1 - XSS
Multiple cross-site scripting (XSS) vulnerabilities in the Classic Meeting Server in IBM Sametime 7.5.1.2 through 8.5.2.1 allow remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
CWE-79 May 02, 2013
CVE-2013-2321 EPSS 0.01
HP Service Manager Web Tier - XSS
Cross-site scripting (XSS) vulnerability in HP Service Manager Web Tier 9.31 before 9.31.2004 p2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
CWE-79 May 02, 2013
CVE-2013-1160 EPSS 0.00
Cisco Prime Central - XSS
Cross-site scripting (XSS) vulnerability in the OpenView web menus in Cisco Prime Central for Hosted Collaboration Solution allows remote attackers to inject arbitrary web script or HTML via an unspecified parameter, aka Bug ID CSCud56743.
CWE-79 May 01, 2013
CVE-2013-1159 EPSS 0.00
Cisco Prime Central - XSS
Cross-site scripting (XSS) vulnerability in the Netcool Impact (NCI) web menus in Cisco Prime Central for Hosted Collaboration Solution allows remote attackers to inject arbitrary web script or HTML via an unspecified parameter, aka Bug ID CSCud56706.
CWE-79 May 01, 2013
CVE-2013-1158 EPSS 0.00
Cisco Prime Central - XSS
Cross-site scripting (XSS) vulnerability in the IBM Tivoli Monitoring (ITM) help menus in Cisco Prime Central for Hosted Collaboration Solution allows remote attackers to inject arbitrary web script or HTML via an unspecified parameter, aka Bug ID CSCud54397.
CWE-79 May 01, 2013
CVE-2013-1157 EPSS 0.00
Cisco Prime Central - XSS
Cross-site scripting (XSS) vulnerability in the IBM Tivoli Monitoring (ITM) Java servlet container in Cisco Prime Central for Hosted Collaboration Solution allows remote attackers to inject arbitrary web script or HTML via an unspecified parameter, aka Bug ID CSCud51068.
CWE-79 May 01, 2013
CVE-2013-0538 EPSS 0.01
IBM Lotus Notes <8.5.3 FP4 IF1 & 9.0 - XSS
Cross-site scripting (XSS) vulnerability in IBM Lotus Notes 8.x before 8.5.3 FP4 Interim Fix 1 and 9.0 before Interim Fix 1 allows remote attackers to inject arbitrary web script or HTML via a SCRIPT element in an HTML e-mail message, aka SPRs JMOY95BLM6 and JMOY95BN49.
CWE-79 May 01, 2013
CVE-2013-1227 EPSS 0.00
Cisco Unified Communications Domain Manager - XSS
Cross-site scripting (XSS) vulnerability in the web framework in Cisco Unified Communications Domain Manager allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka Bug ID CSCug37902.
CWE-79 Apr 29, 2013
CVE-2013-1198 EPSS 0.00
Cisco UCS Central - XSS
Cross-site scripting (XSS) vulnerability in a Flash component in Cisco Unified Computing System (UCS) Central allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka Bug ID CSCud15430.
CWE-79 Apr 29, 2013
CVE-2013-0533 EPSS 0.00
IBM Sametime <8.5.2.1 - XSS
Cross-site scripting (XSS) vulnerability in the Sametime Links server in IBM Sametime 8.0.2 through 8.5.2.1 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
CWE-79 Apr 28, 2013
CVE-2012-5219 EPSS 0.01
HP MPA <2.7.0 - XSS
Cross-site scripting (XSS) vulnerability in HP Managed Printing Administration (MPA) before 2.7.0 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
CWE-79 Apr 28, 2013
CVE-2013-0572 EPSS 0.00
IBM Document Connect <1.0.0.1218 - XSS
Cross-site scripting (XSS) vulnerability in IBM Document Connect for Application Support Facility (aka DC4ASF) before 1.0.0.1218 in Application Support Facility (ASF) 3.4 for z/OS on Windows, Linux, and AIX allows remote authenticated users to inject content, and conduct phishing attacks, via unspecified vectors.
CWE-79 Apr 27, 2013
CVE-2013-0571 EPSS 0.00
IBM Document Connect <1.0.0.1218 - XSS
Cross-site scripting (XSS) vulnerability in IBM Document Connect for Application Support Facility (aka DC4ASF) before 1.0.0.1218 in Application Support Facility (ASF) 3.4 for z/OS on Windows, Linux, and AIX allows remote attackers to inject arbitrary web script or HTML via a crafted URL.
CWE-79 Apr 27, 2013
CVE-2013-0569 EPSS 0.00
IBM Connections 4.5 - XSS
Cross-site scripting (XSS) vulnerability in the Communities component in IBM Connections 4.5 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
CWE-79 Apr 27, 2013
CVE-2013-0565 EPSS 0.00
IBM WAS <8.5.0.2 - XSS
Cross-site scripting (XSS) vulnerability in the RPC adapter for the Web 2.0 and Mobile toolkit in IBM WebSphere Application Server (WAS) 8.5 before 8.5.0.2 allows remote attackers to inject arbitrary web script or HTML via a crafted response.
CWE-79 Apr 24, 2013