CVE & Exploit Intelligence Database

Updated 4h ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

338,575 CVEs tracked 53,318 with exploits 4,733 exploited in wild 1,543 CISA KEV 3,938 Nuclei templates 48,991 vendors 42,653 researchers
111,032 results Clear all
CVE-2016-2519 5.9 MEDIUM EPSS 0.09
Ntp < 4.2.8 - Memory Corruption
ntpd in NTP before 4.2.8p7 and 4.3.x before 4.3.92 allows remote attackers to cause a denial of service (ntpd abort) by a large request data value, which triggers the ctl_getitem function to return a NULL value.
CWE-119 Jan 30, 2017
CVE-2016-2518 5.3 MEDIUM EPSS 0.02
Ntp < 4.2.8 - Out-of-Bounds Read
The MATCH_ASSOC function in NTP before version 4.2.8p9 and 4.3.x before 4.3.92 allows remote attackers to cause an out-of-bounds reference via an addpeer request with a large hmode value.
CWE-125 Jan 30, 2017
CVE-2016-2517 5.3 MEDIUM EPSS 0.03
Ntp < 4.2.8 - Improper Input Validation
NTP before 4.2.8p7 and 4.3.x before 4.3.92 allows remote attackers to cause a denial of service (prevent subsequent authentication) by leveraging knowledge of the controlkey or requestkey and sending a crafted packet to ntpd, which changes the value of trustedkey, controlkey, or requestkey. NOTE: this vulnerability exists because of a CVE-2016-2516 regression.
CWE-20 Jan 30, 2017
CVE-2016-2516 5.3 MEDIUM EPSS 0.04
Ntp < 4.2.8 - Improper Input Validation
NTP before 4.2.8p7 and 4.3.x before 4.3.92, when mode7 is enabled, allows remote attackers to cause a denial of service (ntpd abort) by using the same IP address multiple times in an unconfig directive.
CWE-20 Jan 30, 2017
CVE-2015-8158 5.9 MEDIUM EPSS 0.08
NTP <4.2.8p9, <4.3.90 - DoS
The getresponse function in ntpq in NTP versions before 4.2.8p9 and 4.3.x before 4.3.90 allows remote attackers to cause a denial of service (infinite loop) via crafted packets with incorrect values.
Jan 30, 2017
CVE-2015-8140 4.8 MEDIUM EPSS 0.30
NTP <4.2.8p7 - Info Disclosure
The ntpq protocol in NTP before 4.2.8p7 allows remote attackers to conduct replay attacks by sniffing the network.
CWE-284 Jan 30, 2017
CVE-2015-8139 5.3 MEDIUM EPSS 0.30
NTP <4.2.8p7 - Info Disclosure
ntpq in NTP before 4.2.8p7 allows remote attackers to obtain origin timestamps and then impersonate peers via unspecified vectors.
CWE-284 Jan 30, 2017
CVE-2015-8138 5.3 MEDIUM EPSS 0.01
NTP <4.2.8p6, <4.3.90 - Auth Bypass
NTP before 4.2.8p6 and 4.3.x before 4.3.90 allows remote attackers to bypass the origin timestamp validation via a packet with an origin timestamp set to zero.
CWE-20 Jan 30, 2017
CVE-2015-7977 5.9 MEDIUM EPSS 0.16
NTP <4.2.8p6, <4.3.90 - DoS
ntpd in NTP before 4.2.8p6 and 4.3.x before 4.3.90 allows remote attackers to cause a denial of service (NULL pointer dereference) via a ntpdc reslist command.
CWE-476 Jan 30, 2017
CVE-2015-7976 4.3 MEDIUM EPSS 0.03
NTP <4.2.8p6-4.3.77 - Info Disclosure
The ntpq saveconfig command in NTP 4.1.2, 4.2.x before 4.2.8p6, 4.3, 4.3.25, 4.3.70, and 4.3.77 does not properly filter special characters, which allows attackers to cause unspecified impact via a crafted filename.
CWE-254 Jan 30, 2017
CVE-2015-7975 6.2 MEDIUM EPSS 0.00
NTP <4.2.8p6, <4.3.90 - DoS
The nextvar function in NTP before 4.2.8p6 and 4.3.x before 4.3.90 does not properly validate the length of its input, which allows an attacker to cause a denial of service (application crash).
CWE-119 Jan 30, 2017
CVE-2015-7973 6.5 MEDIUM EPSS 0.09
NTP <4.2.8p6 & <4.3.90 - Info Disclosure
NTP before 4.2.8p6 and 4.3.x before 4.3.90, when configured in broadcast mode, allows man-in-the-middle attackers to conduct replay attacks by sniffing the network.
CWE-254 Jan 30, 2017
CVE-2017-5573 4.9 MEDIUM EPSS 0.00
Citrix XenServer <7.0 - Privilege Escalation
An issue was discovered in Linux Foundation xapi in Citrix XenServer through 7.0. An authenticated read-only administrator can cancel tasks of other administrators.
Jan 30, 2017
CVE-2017-5572 6.5 MEDIUM EPSS 0.00
Citrix Xenserver - Improper Privilege Management
An issue was discovered in Linux Foundation xapi in Citrix XenServer through 7.0. An authenticated read-only administrator can corrupt the host database.
CWE-269 Jan 30, 2017
CVE-2017-5632 6.5 MEDIUM EPSS 0.00
Asus Rt-n56u Firmware - Denial of Service
An issue was discovered on the ASUS RT-N56U Wireless Router with Firmware 3.0.0.4.374_979. When executing an "nmap -O" command that specifies an IP address of an affected device, one can crash the device's WAN connection, causing disconnection from the Internet, a Denial of Service (DoS). The attack is only possible from within the local area network.
Jan 30, 2017
CVE-2017-5612 6.1 MEDIUM 1 Writeup EPSS 0.02
Wordpress < 4.7.1 - XSS
Cross-site scripting (XSS) vulnerability in wp-admin/includes/class-wp-posts-list-table.php in the posts list table in WordPress before 4.7.2 allows remote attackers to inject arbitrary web script or HTML via a crafted excerpt.
CWE-79 Jan 30, 2017
CVE-2017-5610 5.3 MEDIUM 1 Writeup EPSS 0.01
Wordpress < 4.7.1 - Information Disclosure
wp-admin/includes/class-wp-press-this.php in Press This in WordPress before 4.7.2 does not properly restrict visibility of a taxonomy-assignment user interface, which allows remote attackers to bypass intended access restrictions by reading terms.
CWE-200 Jan 30, 2017
CVE-2017-5608 6.1 MEDIUM 1 Writeup EPSS 0.01
Piwigo < 2.8.5 - XSS
Cross-site scripting (XSS) vulnerability in the image upload function in Piwigo before 2.8.6 allows remote attackers to inject arbitrary web script or HTML via a crafted image filename.
CWE-79 Jan 28, 2017
CVE-2017-3318 4.0 MEDIUM EPSS 0.00
MySQL <5.7.17 - Privilege Escalation
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Error Handling). Supported versions that are affected are 5.5.53 and earlier, 5.6.34 and earlier and 5.7.16 and earlier. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where MySQL Server executes to compromise MySQL Server. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all MySQL Server accessible data. CVSS v3.0 Base Score 4.0 (Confidentiality impacts).
Jan 27, 2017
CVE-2017-3317 4.0 MEDIUM EPSS 0.00
Oracle Mysql < 5.5.53 - Denial of Service
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Logging). Supported versions that are affected are 5.5.53 and earlier, 5.6.34 and earlier and 5.7.16 and earlier. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where MySQL Server executes to compromise MySQL Server. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS v3.0 Base Score 4.0 (Availability impacts).
Jan 27, 2017