Exploit Intelligence Platform

Updated 5h ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

339,281 CVEs tracked 53,347 with exploits 4,748 exploited in wild 1,551 CISA KEV 3,945 Nuclei templates 49,115 vendors 42,789 researchers
42,578 results Clear all
CVE-2013-0473 EPSS 0.00
IBM Security Appscan - XSS
Multiple cross-site scripting (XSS) vulnerabilities in IBM Security AppScan Enterprise 5.6 and 8.x before 8.7 and IBM Rational Policy Tester 5.6 and 8.x before 8.5.0.4 allow remote attackers to inject arbitrary web script or HTML via a crafted report.
CWE-79 Mar 29, 2013
CVE-2013-2290 EPSS 0.00
Arubanetworks Arubaos - XSS
Cross-site scripting (XSS) vulnerability in the dashboard of the ArubaOS Administration WebUI in Aruba Networks ArubaOS 6.2.x before 6.2.0.3, 6.1.3.x before 6.1.3.7, 6.1.x-FIPS before 6.1.4.3-FIPS, and 6.1.x-AirGroup before 6.1.3.6-AirGroup, as used by Mobility Controller, allows remote wireless access points to inject arbitrary web script or HTML via a crafted SSID.
CWE-79 Mar 28, 2013
CVE-2013-0936 EPSS 0.00
EMC Smarts <9.2 - XSS
Cross-site scripting (XSS) vulnerability in EMC Smarts IP Manager, Smarts Service Assurance Manager, Smarts Server Manager, Smarts VoIP Availability Manager, Smarts Network Protocol Manager, and Smarts MPLS Manager before 9.2 allows remote attackers to inject arbitrary web script or HTML via a crafted URL.
CWE-79 Mar 28, 2013
CVE-2013-1887 EPSS 0.00
Views - XSS
Multiple cross-site scripting (XSS) vulnerabilities in the Views module 7.x-3.x before 7.x-3.6 for Drupal allow remote authenticated users with certain permissions to inject arbitrary web script or HTML via certain view configuration fields.
CWE-79 Mar 27, 2013
CVE-2013-2715 EPSS 0.00
Drupal search_api <7.x-1.4 - XSS
Cross-site scripting (XSS) vulnerability in the admin view in the Search API (search_api) module 7.x-1.x before 7.x-1.4 for Drupal allows remote authenticated users with certain permissions to inject arbitrary web script or HTML via a crafted field name.
CWE-79 Mar 27, 2013
CVE-2013-1787 EPSS 0.00
Devsaran Corporate < 7.x-1.3 - XSS
Cross-site scripting (XSS) vulnerability in the 3 slide gallery in the Simple Corporate theme before 7.x-1.4 for Drupal allows remote authenticated users with the administer themes permission to inject arbitrary web script or HTML via unspecified vectors.
CWE-79 Mar 27, 2013
CVE-2013-1786 EPSS 0.00
Devsaran Company < 7.x-1.3 - XSS
Cross-site scripting (XSS) vulnerability in the 3 slide gallery in the Company theme before 7.x-1.4 for Drupal allows remote authenticated users with the administer themes permission to inject arbitrary web script or HTML via unspecified vectors.
CWE-79 Mar 27, 2013
CVE-2013-1785 EPSS 0.00
Devsaran Responsive < 7.x-1.5 - XSS
Cross-site scripting (XSS) vulnerability in the 3 slide gallery in the Premium Responsive theme before 7.x-1.6 for Drupal allows remote authenticated users with the administer themes permission to inject arbitrary web script or HTML via unspecified vectors.
CWE-79 Mar 27, 2013
CVE-2013-1784 EPSS 0.00
Devsaran Clean Theme < 7.x-1.2 - XSS
Cross-site scripting (XSS) vulnerability in the 3 slide gallery in the Clean Theme before 7.x-1.3 for Drupal allows remote authenticated users with the administer themes permission to inject arbitrary web script or HTML via unspecified vectors.
CWE-79 Mar 27, 2013
CVE-2013-1783 EPSS 0.00
Devsaran Business < 7.x-1.8 - XSS
Cross-site scripting (XSS) vulnerability in the 3 slide gallery in page--front.tpl.php in the Business theme before 7.x-1.8 for Drupal allows remote authenticated users with the administer themes permission to inject arbitrary web script or HTML via unspecified vectors.
CWE-79 Mar 27, 2013
CVE-2013-1782 EPSS 0.00
Devsaran Responsive Blog - XSS
Cross-site scripting (XSS) vulnerability in the Responsive Blog Theme 7.x-1.x before 7.x-1.6 for Drupal allows remote authenticated users with the administer themes permission to inject arbitrary web script or HTML via vectors related to social icons.
CWE-79 Mar 27, 2013
CVE-2013-1781 EPSS 0.00
Devsaran Professional Theme < 7.x-1.3 - XSS
Cross-site scripting (XSS) vulnerability in the 3 slide gallery in the Professional theme before 7.x-1.4 for Drupal allows remote authenticated users with the administer themes permission to inject arbitrary web script or HTML via unspecified vectors.
CWE-79 Mar 27, 2013
CVE-2013-1780 EPSS 0.00
Devsaran Best Responsive - XSS
Cross-site scripting (XSS) vulnerability in the Best Responsive Theme 7.x-1.x before 7.x-1.1 for Drupal allows remote authenticated users with the administer themes permission to inject arbitrary web script or HTML via vectors related to social icons.
CWE-79 Mar 27, 2013
CVE-2013-1779 EPSS 0.00
Devsaran Fresh < 7.x-1.3 - XSS
Cross-site scripting (XSS) vulnerability in the 3 slide gallery in the Fresh theme before 7.x-1.4 for Drupal allows remote authenticated users with the administer themes permission to inject arbitrary web script or HTML via unspecified vectors.
CWE-79 Mar 27, 2013
CVE-2013-1778 EPSS 0.00
Devsaran Creative - XSS
Cross-site scripting (XSS) vulnerability in the Creative Theme 7.x-1.x before 7.x-1.2 for Drupal allows remote authenticated users with the administer themes permission to inject arbitrary web script or HTML via vectors related to social icons.
CWE-79 Mar 27, 2013
CVE-2013-0325 EPSS 0.00
Varnish - XSS
Multiple cross-site scripting (XSS) vulnerabilities in the Varnish module 6.x-1.x before 6.x-1.2 and 7.x-1.x before 7.x-1.0-beta2 for Drupal allow remote attackers to inject arbitrary web script or HTML via crafted a (1) Watchdog message or (2) admin setting.
CWE-79 Mar 27, 2013
CVE-2013-0324 EPSS 0.00
Tomasbarej Menu Reference - XSS
Cross-site scripting (XSS) vulnerability in the Rendered links formatter in the Menu Reference module 7.x-1.x before 7.x-1.0 for Drupal allows remote authenticated users with the "Administer menus and menu items" permission to inject arbitrary web script or HTML via the menu link title.
CWE-79 Mar 27, 2013
CVE-2013-0323 EPSS 0.00
Display Suite DS - XSS
Cross-site scripting (XSS) vulnerability in the Display Suite module 7.x-1.x before 7.x-1.7 and 7.x-2.x before 7.x-2.1 for Drupal allows remote attackers to inject arbitrary web script or HTML via the author field.
CWE-79 Mar 27, 2013
CVE-2013-0322 EXPLOITED RANSOMWARE EPSS 0.00
Ubercart - XSS
Cross-site scripting (XSS) vulnerability in Views in the Ubercart module 7.x-3.x before 7.x-3.4 for Drupal allows remote attackers to inject arbitrary web script or HTML via the full name field.
CWE-79 Mar 27, 2013
CVE-2013-0321 EPSS 0.00
Ubercart Views UC Views - XSS
Cross-site scripting (XSS) vulnerability in Views in the Ubercart Views (uc_views) module 6.x before 6.x-3.3 for Drupal allows remote attackers to inject arbitrary web script or HTML via the full name field.
CWE-79 Mar 27, 2013