CVE & Exploit Intelligence Database

Updated 40m ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

338,527 CVEs tracked 53,314 with exploits 4,732 exploited in wild 1,543 CISA KEV 3,934 Nuclei templates 48,968 vendors 42,617 researchers
111,005 results Clear all
CVE-2016-9103 6.0 MEDIUM EPSS 0.00
QEMU - Info Disclosure
The v9fs_xattrcreate function in hw/9pfs/9p.c in QEMU (aka Quick Emulator) allows local guest OS administrators to obtain sensitive host heap memory information by reading xattribute values before writing to them.
CWE-200 Dec 09, 2016
CVE-2016-9102 6.0 MEDIUM EPSS 0.00
QEMU - Memory Corruption
Memory leak in the v9fs_xattrcreate function in hw/9pfs/9p.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (memory consumption and QEMU process crash) via a large number of Txattrcreate messages with the same fid number.
CWE-772 Dec 09, 2016
CVE-2016-9101 6.0 MEDIUM EPSS 0.00
QEMU - Memory Corruption
Memory leak in hw/net/eepro100.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (memory consumption and QEMU process crash) by repeatedly unplugging an i8255x (PRO100) NIC device.
CWE-772 Dec 09, 2016
CVE-2016-6523 6.1 MEDIUM EPSS 0.01
Dotclear <2.10 - XSS
Multiple cross-site scripting (XSS) vulnerabilities in the media manager in Dotclear before 2.10 allow remote attackers to inject arbitrary web script or HTML via the (1) q or (2) link_type parameter to admin/media.php.
CWE-79 Dec 09, 2016
CVE-2015-8786 6.5 MEDIUM EPSS 0.01
Oracle Solaris - Resource Management Error
The Management plugin in RabbitMQ before 3.6.1 allows remote authenticated users with certain privileges to cause a denial of service (resource consumption) via the (1) lengths_age or (2) lengths_incr parameter.
CWE-399 Dec 09, 2016
CVE-2016-8104 5.5 MEDIUM EPSS 0.00
Intel PROSet/Wireless <19.20.3 - Buffer Overflow
Buffer overflow in Intel PROSet/Wireless Software and Drivers in versions before 19.20.3 allows a local user to crash iframewrk.exe causing a potential denial of service.
CWE-119 Dec 08, 2016
CVE-2016-8103 6.7 MEDIUM EPSS 0.00
Intel Branded NUC Kits - Privilege Escalation
SMM call out in all Intel Branded NUC Kits allows a local privileged user to access the System Management Mode and take full control of the platform.
CWE-264 Dec 08, 2016
CVE-2016-9888 5.5 MEDIUM 1 Writeup EPSS 0.00
Gnome Libgsf < 1.14.40 - NULL Pointer Dereference
An error within the "tar_directory_for_file()" function (gsf-infile-tar.c) in GNOME Structured File Library before 1.14.41 can be exploited to trigger a Null pointer dereference and subsequently cause a crash via a crafted TAR file.
CWE-476 Dec 08, 2016
CVE-2016-5341 5.9 MEDIUM EPSS 0.00
Google Android < 7.1.0 - Improper Access Control
The GPS component in Android before 2016-12-05 allows man-in-the-middle attackers to cause a denial of service (GPS signal-acquisition delay) via an incorrect xtra.bin or xtra2.bin file on a spoofed Qualcomm gpsonextra.net or izatcloud.net host, aka internal bug 31470303 and external bug 211602 (and AndroidID-7225554).
CWE-284 Dec 06, 2016
CVE-2016-9152 6.1 MEDIUM EPSS 0.00
SPIP 3.1.3 - XSS
Cross-site scripting (XSS) vulnerability in ecrire/exec/plonger.php in SPIP 3.1.3 allows remote attackers to inject arbitrary web script or HTML via the rac parameter.
CWE-79 Dec 05, 2016
CVE-2016-7171 5.6 MEDIUM EPSS 0.00
Netapp Plug-in < 2.0 - Improper Certificate Validation
NetApp Plug-in for Symantec NetBackup prior to version 2.0.1 makes use of a non-unique server certificate, making it vulnerable to impersonation.
CWE-295 Dec 05, 2016
CVE-2016-9804 5.3 MEDIUM EPSS 0.00
Bluez - Memory Corruption
In BlueZ 5.42, a buffer overflow was observed in "commands_dump" function in "tools/parser/csr.c" source file. The issue exists because "commands" array is overflowed by supplied parameter due to lack of boundary checks on size of the buffer from frame "frm->ptr" parameter. This issue can be triggered by processing a corrupted dump file and will result in hcidump crash.
CWE-119 Dec 03, 2016
CVE-2016-9803 5.3 MEDIUM EPSS 0.00
Bluez - Memory Corruption
In BlueZ 5.42, an out-of-bounds read was observed in "le_meta_ev_dump" function in "tools/parser/hci.c" source file. This issue exists because 'subevent' (which is used to read correct element from 'ev_le_meta_str' array) is overflowed.
CWE-119 Dec 03, 2016
CVE-2016-9802 5.3 MEDIUM EPSS 0.00
Bluez - Memory Corruption
In BlueZ 5.42, a buffer over-read was identified in "l2cap_packet" function in "monitor/packet.c" source file. This issue can be triggered by processing a corrupted dump file and will result in btmon crash.
CWE-119 Dec 03, 2016
CVE-2016-9801 5.3 MEDIUM EPSS 0.00
Bluez - Memory Corruption
In BlueZ 5.42, a buffer overflow was observed in "set_ext_ctrl" function in "tools/parser/l2cap.c" source file when processing corrupted dump file.
CWE-119 Dec 03, 2016
CVE-2016-9800 5.3 MEDIUM EPSS 0.00
Bluez - Memory Corruption
In BlueZ 5.42, a buffer overflow was observed in "pin_code_reply_dump" function in "tools/parser/hci.c" source file. The issue exists because "pin" array is overflowed by supplied parameter due to lack of boundary checks on size of the buffer from frame "pin_code_reply_cp *cp" parameter.
CWE-119 Dec 03, 2016
CVE-2016-9799 5.3 MEDIUM EPSS 0.00
Bluez - Memory Corruption
In BlueZ 5.42, a buffer overflow was observed in "pklg_read_hci" function in "btsnoop.c" source file. This issue can be triggered by processing a corrupted dump file and will result in btmon crash.
CWE-119 Dec 03, 2016
CVE-2016-9798 5.3 MEDIUM EPSS 0.00
Bluez - Use After Free
In BlueZ 5.42, a use-after-free was identified in "conf_opt" function in "tools/parser/l2cap.c" source file. This issue can be triggered by processing a corrupted dump file and will result in hcidump crash.
CWE-416 Dec 03, 2016
CVE-2016-9797 5.3 MEDIUM EPSS 0.00
Bluez - Memory Corruption
In BlueZ 5.42, a buffer over-read was observed in "l2cap_dump" function in "tools/parser/l2cap.c" source file. This issue can be triggered by processing a corrupted dump file and will result in hcidump crash.
CWE-119 Dec 03, 2016
CVE-2016-9751 6.1 MEDIUM EPSS 0.00
Piwigo - XSS
Cross-site scripting (XSS) vulnerability in the search results front end in Piwigo 2.8.3 allows remote attackers to inject arbitrary web script or HTML via the search parameter.
CWE-79 Dec 01, 2016