CVE & Exploit Intelligence Database

Updated 3h ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

337,847 CVEs tracked 53,242 with exploits 4,725 exploited in wild 1,540 CISA KEV 3,918 Nuclei templates 37,802 vendors 42,493 researchers
360 results Clear all
CVE-2017-11238 6.5 MEDIUM EPSS 0.13
Adobe Acrobat < 11.0.20 - Memory Corruption
Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable memory corruption vulnerability in the image conversion engine when processing Enhanced Metafile Format (EMF) data related to curve drawing. Successful exploitation could lead to arbitrary code execution.
CWE-119 Aug 11, 2017
CVE-2017-11237 8.8 HIGH EPSS 0.08
Adobe Acrobat < 11.0.20 - Memory Corruption
Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable memory corruption vulnerability in the font parsing module. Successful exploitation could lead to arbitrary code execution.
CWE-119 Aug 11, 2017
CVE-2017-11236 6.5 MEDIUM EPSS 0.13
Adobe Acrobat < 11.0.20 - Memory Corruption
Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable memory corruption vulnerability in the internal handling of UTF-16 literal strings. Successful exploitation could lead to arbitrary code execution.
CWE-119 Aug 11, 2017
CVE-2017-11235 8.8 HIGH EPSS 0.05
Adobe Acrobat < 11.0.20 - Use After Free
Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable use after free vulnerability in the image conversion engine when decompressing JPEG data. Successful exploitation could lead to arbitrary code execution.
CWE-416 Aug 11, 2017
CVE-2017-11234 8.8 HIGH EPSS 0.08
Adobe Acrobat < 11.0.20 - Memory Corruption
Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable memory corruption vulnerability in the image conversion engine when processing TIFF data related to the way how the components of each pixel are stored. Successful exploitation could lead to arbitrary code execution.
CWE-119 Aug 11, 2017
CVE-2017-11233 6.5 MEDIUM EPSS 0.13
Adobe Acrobat < 11.0.20 - Memory Corruption
Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable memory corruption vulnerability in the image conversion engine when processing Enhanced Metafile Format (EMF) data related to block transfer of pixels. Successful exploitation could lead to arbitrary code execution.
CWE-119 Aug 11, 2017
CVE-2017-11232 6.5 MEDIUM EPSS 0.12
Adobe Acrobat < 11.0.20 - Information Disclosure
Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable use after free vulnerability when processing Enhanced Metafile Format (EMF) data related to brush manipulation. Successful exploitation could lead to arbitrary code execution.
CWE-200 Aug 11, 2017
CVE-2017-11231 8.8 HIGH EPSS 0.05
Adobe Acrobat < 11.0.20 - Use After Free
Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable use after free vulnerability in Acrobat/Reader rendering engine. Successful exploitation could lead to arbitrary code execution.
CWE-416 Aug 11, 2017
CVE-2017-11230 6.5 MEDIUM EPSS 0.13
Adobe Acrobat < 11.0.20 - Memory Corruption
Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable memory corruption vulnerability in the JPEG 2000 engine. Successful exploitation could lead to arbitrary code execution.
CWE-119 Aug 11, 2017
CVE-2017-11229 8.8 HIGH EPSS 0.06
Adobe Acrobat Reader <2017.009.20058 - Auth Bypass
Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has a security bypass vulnerability when manipulating Forms Data Format (FDF).
Aug 11, 2017
CVE-2017-11228 8.8 HIGH EPSS 0.08
Adobe Acrobat < 11.0.20 - Memory Corruption
Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable memory corruption vulnerability in the image conversion engine when processing JPEG 2000 (JP2) code stream data. Successful exploitation could lead to arbitrary code execution.
CWE-119 Aug 11, 2017
CVE-2017-11227 8.8 HIGH EPSS 0.08
Adobe Acrobat < 11.0.20 - Memory Corruption
Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable memory corruption vulnerability in the image conversion engine when processing Enhanced Metafile Format (EMF) private data. Successful exploitation could lead to arbitrary code execution.
CWE-119 Aug 11, 2017
CVE-2017-11226 8.8 HIGH EPSS 0.08
Adobe Acrobat < 11.0.20 - Memory Corruption
Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable memory corruption vulnerability in the image processing engine when processing JPEG 2000 (JP2) code stream data. Successful exploitation could lead to arbitrary code execution.
CWE-119 Aug 11, 2017
CVE-2017-11224 8.8 HIGH EPSS 0.05
Adobe Acrobat < 11.0.20 - Use After Free
Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable use after free vulnerability in the XFA layout engine. Successful exploitation could lead to arbitrary code execution.
CWE-416 Aug 11, 2017
CVE-2017-11223 8.8 HIGH EPSS 0.05
Adobe Acrobat < 11.0.20 - Use After Free
Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable use after free vulnerability in the core of the XFA engine. Successful exploitation could lead to arbitrary code execution.
CWE-416 Aug 11, 2017
CVE-2017-11222 8.8 HIGH EPSS 0.08
Adobe Acrobat < 11.0.20 - Memory Corruption
Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable memory corruption vulnerability in the Product Representation Compact (PRC) engine. Successful exploitation could lead to arbitrary code execution.
CWE-119 Aug 11, 2017
CVE-2017-11221 8.8 HIGH EPSS 0.13
Adobe Acrobat Reader <2017.009.20058 - RCE
Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable type confusion vulnerability in the annotation functionality. Successful exploitation could lead to arbitrary code execution.
CWE-704 Aug 11, 2017
CVE-2017-11220 8.8 HIGH EPSS 0.13
Adobe Acrobat < 11.0.20 - Memory Corruption
Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable heap overflow vulnerability in an internal data structure. Successful exploitation could lead to arbitrary code execution.
CWE-119 Aug 11, 2017
CVE-2017-11219 8.8 HIGH EPSS 0.05
Adobe Acrobat < 11.0.20 - Use After Free
Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable use after free vulnerability in the XFA rendering engine. Successful exploitation could lead to arbitrary code execution.
CWE-416 Aug 11, 2017
CVE-2017-11218 8.8 HIGH EPSS 0.05
Adobe Acrobat < 11.0.20 - Use After Free
Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable use after free vulnerability in XFA event management. Successful exploitation could lead to arbitrary code execution.
CWE-416 Aug 11, 2017