CVE & Exploit Intelligence Database

Updated 1h ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

338,325 CVEs tracked 53,302 with exploits 4,731 exploited in wild 1,542 CISA KEV 3,931 Nuclei templates 48,916 vendors 42,598 researchers
110,849 results Clear all
CVE-2016-7090 4.0 MEDIUM EPSS 0.01
Siemens Scalance M-800 Firmware < 4.01 - Information Disclosure
The integrated web server on Siemens SCALANCE M-800 and S615 modules with firmware before 4.02 does not set the secure flag for the session cookie in an https session, which makes it easier for remote attackers to capture this cookie by intercepting its transmission within an http session.
CWE-200 Sep 29, 2016
CVE-2016-5176 6.5 MEDIUM EPSS 0.00
Google Chrome < 53.0.2785.101 - Improper Access Control
Google Chrome before 53.0.2785.113 allows remote attackers to bypass the SafeBrowsing protection mechanism via unspecified vectors.
CWE-284 Sep 29, 2016
CVE-2016-5061 6.1 MEDIUM EPSS 0.00
Aternity < 9.0 - XSS
Multiple cross-site scripting (XSS) vulnerabilities in the web server in Aternity before 9.0.1 allow remote attackers to inject arbitrary web script or HTML via the (1) HTTPAgent, (2) MacAgent, (3) getExternalURL, or (4) retrieveTrustedUrl page.
CWE-79 Sep 29, 2016
CVE-2016-7498 6.5 MEDIUM EPSS 0.02
Openstack Compute (nova) - Resource Management Error
OpenStack Compute (nova) 13.0.0 does not properly delete instances from compute nodes, which allows remote authenticated users to cause a denial of service (disk consumption) by deleting instances while in the resize state. NOTE: this vulnerability exists because of a CVE-2015-3280 regression.
CWE-399 Sep 27, 2016
CVE-2016-6146 5.3 MEDIUM EPSS 0.00
SAP TREX 7.10- Revision 63 - Info Disclosure
The NameServer in SAP TREX 7.10 Revision 63 allows remote attackers to obtain sensitive TNS information via an unspecified query, aka SAP Security Note 2234226.
CWE-200 Sep 27, 2016
CVE-2016-4058 5.4 MEDIUM EPSS 0.00
Huawei Policy Center <V100R003C10SPC020 - XSS
Cross-site scripting (XSS) vulnerability in Huawei Policy Center before V100R003C10SPC020 allows remote authenticated users to inject arbitrary web script or HTML via vectors related to "special characters on pages."
CWE-79 Sep 27, 2016
CVE-2016-6308 5.9 MEDIUM EPSS 0.22
OpenSSL <1.1.0a - DoS
statem/statem_dtls.c in the DTLS implementation in OpenSSL 1.1.0 before 1.1.0a allocates memory before checking for an excessive length, which might allow remote attackers to cause a denial of service (memory consumption) via crafted DTLS messages.
CWE-399 Sep 26, 2016
CVE-2016-6307 5.9 MEDIUM EPSS 0.20
OpenSSL <1.1.0a - DoS
The state-machine implementation in OpenSSL 1.1.0 before 1.1.0a allocates memory before checking for an excessive length, which might allow remote attackers to cause a denial of service (memory consumption) via crafted TLS messages, related to statem/statem.c and statem/statem_lib.c.
CWE-400 Sep 26, 2016
CVE-2016-6306 5.9 MEDIUM EPSS 0.08
OpenSSL <1.0.1u, <1.0.2i - DoS
The certificate parser in OpenSSL before 1.0.1u and 1.0.2 before 1.0.2i might allow remote attackers to cause a denial of service (out-of-bounds read) via crafted certificate operations, related to s3_clnt.c and s3_srvr.c.
CWE-125 Sep 26, 2016
CVE-2016-6038 6.5 MEDIUM EPSS 0.00
IBM Tivoli LWI - Path Traversal
Directory traversal vulnerability in Eclipse Help in IBM Tivoli Lightweight Infrastructure (aka LWI), as used in AIX 5.3, 6.1, and 7.1, allows remote authenticated users to read arbitrary files via a crafted URL.
CWE-22 Sep 26, 2016
CVE-2016-6913 5.4 MEDIUM EPSS 0.00
Alienvault Open Source Security Information And Event Management - XSS
Cross-site scripting (XSS) vulnerability in AlienVault OSSIM before 5.3 and USM before 5.3 allows remote attackers to inject arbitrary web script or HTML via the back parameter to ossim/conf/reload.php.
CWE-79 Sep 26, 2016
CVE-2016-6901 6.5 MEDIUM EPSS 0.00
Huawei AR Firmware - Improper Input Validation
Format string vulnerability in Huawei AR100, AR120, AR150, AR200, AR500, AR550, AR1200, AR2200, AR2500, AR3200, and AR3600 routers with software before V200R007C00SPC900 and NetEngine 16EX routers with software before V200R007C00SPC900 allows remote authenticated users to cause a denial of service via format string specifiers in vectors involving partial commands.
CWE-20 Sep 26, 2016
CVE-2016-6827 6.5 MEDIUM EPSS 0.00
Huawei Fusioncompute < v100r003c10 - Information Disclosure
Huawei FusionCompute before V100R005C10CP7002 stores cleartext AES keys in a file, which allows remote authenticated users to obtain sensitive information via unspecified vectors.
CWE-200 Sep 26, 2016
CVE-2016-6826 6.5 MEDIUM EPSS 0.00
Huawei Anyoffice Secureapp - Improper Access Control
Huawei AnyMail before 2.6.0301.0060 allows remote attackers to cause a denial of service (application crash) via a crafted compressed email attachment.
CWE-284 Sep 26, 2016
CVE-2016-6172 6.8 MEDIUM 1 Writeup EPSS 0.00
PowerDNS <4.0.1 - DoS
PowerDNS (aka pdns) Authoritative Server before 4.0.1 allows remote primary DNS servers to cause a denial of service (memory exhaustion and secondary DNS server crash) via a large (1) AXFR or (2) IXFR response.
CWE-400 Sep 26, 2016
CVE-2016-6153 5.9 MEDIUM EPSS 0.00
SQLite <3.13.0 - Info Disclosure
os_unix.c in SQLite before 3.13.0 improperly implements the temporary directory search algorithm, which might allow local users to obtain sensitive information, cause a denial of service (application crash), or have unspecified other impact by leveraging use of the current working directory for temporary files.
CWE-20 Sep 26, 2016
CVE-2016-3639 4.3 MEDIUM EPSS 0.00
SAP HANA DB <1.00.091.00.1418659308 - Info Disclosure
SAP HANA DB 1.00.091.00.1418659308 allows remote attackers to obtain sensitive topology information via an unspecified HTTP request, aka SAP Security Note 2176128.
CWE-200 Sep 26, 2016
CVE-2016-7142 5.9 MEDIUM EPSS 0.00
Inspircd < 2.0.22 - Access Control
The m_sasl module in InspIRCd before 2.0.23, when used with a service that supports SASL_EXTERNAL authentication, allows remote attackers to spoof certificate fingerprints and consequently log in as another user via a crafted SASL message.
CWE-264 Sep 26, 2016
CVE-2016-5746 5.1 MEDIUM EPSS 0.00
libstorage < - Info Disclosure
libstorage, libstorage-ng, and yast-storage improperly store passphrases for encrypted storage devices in a temporary file on disk, which might allow local users to obtain sensitive information by reading the file, as demonstrated by /tmp/libstorage-XXXXXX/pwdf.
Sep 26, 2016
CVE-2016-8279 5.5 MEDIUM EPSS 0.00
Huawei Mate S <CRR-TL00C01B362, P8 <GRA-UL10C00B366, Honor 6/Honor ...
The video driver in Huawei Mate S smartphones with software CRR-TL00 before CRR-TL00C01B362, CRR-UL20 before CRR-UL20C00B362, CRR-CL00 before CRR-CL00C92B362, and CRR-CL20 before CRR-CL20C92B362; P8 smartphones with software GRA-TL00 before GRA-TL00C01B366, GRA-UL00 before GRA-UL00C00B366, GRA-UL10 before GRA-UL10C00B366, and GRA-CL00 before GRA-CL00C92B366; and Honor 6 and Honor 6 Plus smartphones with software before 6.9.16 allows attackers to cause a denial of service (device reboot) via a crafted application.
CWE-284 Sep 26, 2016