CVE & Exploit Intelligence Database

Updated 7m ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

338,325 CVEs tracked 53,302 with exploits 4,731 exploited in wild 1,542 CISA KEV 3,931 Nuclei templates 48,916 vendors 42,598 researchers
110,849 results Clear all
CVE-2016-4618 6.1 MEDIUM EPSS 0.01
Apple Safari < 9.3.5 - XSS
Cross-site scripting (XSS) vulnerability in Safari Reader in Apple iOS before 10 and Safari before 10 allows remote attackers to inject arbitrary web script or HTML via a crafted web site, aka "Universal XSS (UXSS)."
CWE-79 Sep 25, 2016
CVE-2016-0918 4.3 MEDIUM EPSS 0.00
EMC RSA <6.8.1-6.9.1 - Info Disclosure
EMC RSA Identity Management and Governance before 6.8.1 P25 and 6.9.x before 6.9.1 P15 and RSA Via Lifecycle and Governance before 7.0.0 P04 allow remote authenticated users to obtain User Detail Popup information via a modified URL.
CWE-200 Sep 24, 2016
CVE-2016-6412 6.5 MEDIUM EPSS 0.00
Cisco CAF - Man-in-the-Middle
The Cisco Application-hosting Framework (CAF) component in Cisco IOS 15.6(1)T1 and IOS XE, when the IOx feature set is enabled, allows man-in-the-middle attackers to trigger arbitrary downloads via crafted HTTP headers, aka Bug ID CSCuz84773.
CWE-20 Sep 24, 2016
CVE-2016-6410 6.5 MEDIUM EPSS 0.00
Cisco CAF - Info Disclosure
The Cisco Application-hosting Framework (CAF) component in Cisco IOS 15.6(1)T1 and IOS XE, when the IOx feature set is enabled, allows remote authenticated users to read arbitrary files via unspecified vectors, aka Bug ID CSCuy19856.
CWE-20 Sep 24, 2016
CVE-2016-5282 6.5 MEDIUM EPSS 0.00
Mozilla Firefox < 48.0.2 - Information Disclosure
Mozilla Firefox before 49.0 does not properly restrict the scheme in favicon requests, which might allow remote attackers to obtain sensitive information via unspecified vectors, as demonstrated by a jar: URL for a favicon resource.
CWE-200 Sep 22, 2016
CVE-2016-5279 4.3 MEDIUM EPSS 0.00
Mozilla Firefox < 48.0.2 - Information Disclosure
Mozilla Firefox before 49.0 allows user-assisted remote attackers to obtain sensitive full-pathname information during a local-file drag-and-drop operation via crafted JavaScript code.
CWE-200 Sep 22, 2016
CVE-2016-5271 6.5 MEDIUM EPSS 0.00
Mozilla Firefox < 48.0.2 - Out-of-Bounds Read
The PropertyProvider::GetSpacingInternal function in Mozilla Firefox before 49.0 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via text runs in conjunction with a "display: contents" Cascading Style Sheets (CSS) property.
CWE-125 Sep 22, 2016
CVE-2016-2827 6.5 MEDIUM EPSS 0.00
Mozilla Firefox < 48.0.2 - Out-of-Bounds Read
The mozilla::net::IsValidReferrerPolicy function in Mozilla Firefox before 49.0 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a Content Security Policy (CSP) referrer directive with zero values.
CWE-125 Sep 22, 2016
CVE-2014-2146 6.5 MEDIUM EPSS 0.00
Cisco - SSRF
The Zone-Based Firewall (ZBFW) functionality in Cisco IOS, possibly 15.4 and earlier, and IOS XE, possibly 3.13 and earlier, mishandles zone checking for existing sessions, which allows remote attackers to bypass intended resource-access restrictions via spoofed traffic that matches one of these sessions, aka Bug IDs CSCun94946 and CSCun96847.
CWE-20 Sep 22, 2016
CVE-2016-6824 6.5 MEDIUM EPSS 0.00
Huawei Ac6003 Firmware < v200r005c10 - Improper Input Validation
Huawei AC6003, AC6005, AC6605, and ACU2 access controllers with software before V200R006C10SPC200 allows remote authenticated users to cause a denial of service (device restart) via crafted CAPWAP packets.
CWE-20 Sep 22, 2016
CVE-2016-6265 5.5 MEDIUM EPSS 0.00
MuPDF - Use After Free
Use-after-free vulnerability in the pdf_load_xref function in pdf/pdf-xref.c in MuPDF allows remote attackers to cause a denial of service (crash) via a crafted PDF file.
CWE-416 Sep 22, 2016
CVE-2016-7166 5.5 MEDIUM EPSS 0.00
Redhat Enterprise Linux Desktop < 3.1.901a - Resource Management Error
libarchive before 3.2.0 does not limit the number of recursive decompressions, which allows remote attackers to cause a denial of service (memory consumption and application crash) via a crafted gzip file.
CWE-399 Sep 21, 2016
CVE-2016-7154 6.7 MEDIUM EPSS 0.00
Xen - Use After Free
Use-after-free vulnerability in the FIFO event channel code in Xen 4.4.x allows local guest OS administrators to cause a denial of service (host crash) and possibly execute arbitrary code or obtain sensitive information via an invalid guest frame number.
CWE-416 Sep 21, 2016
CVE-2016-7094 4.1 MEDIUM EPSS 0.00
Xen < 4.7.0 - Memory Corruption
Buffer overflow in Xen 4.7.x and earlier allows local x86 HVM guest OS administrators on guests running with shadow paging to cause a denial of service via a pagetable update.
CWE-119 Sep 21, 2016
CVE-2016-6158 6.1 MEDIUM EPSS 0.00
Huawei WS331a - CSRF
Multiple cross-site request forgery (CSRF) vulnerabilities in Huawei WS331a routers with software before WS331a-10 V100R001C01B112 allow remote attackers to hijack the authentication of administrators for requests that (1) restore factory settings or (2) reboot the device via unspecified vectors.
CWE-352 Sep 21, 2016
CVE-2016-5844 6.5 MEDIUM EPSS 0.01
libarchive <3.2.1 - DoS
Integer overflow in the ISO parser in libarchive before 3.2.1 allows remote attackers to cause a denial of service (application crash) via a crafted ISO file.
CWE-190 Sep 21, 2016
CVE-2016-4969 6.1 MEDIUM EPSS 0.01
Fortinet Fortiwan < 4.2.4 - XSS
Cross-site scripting (XSS) vulnerability in Fortinet FortiWan (formerly AscernLink) before 4.2.5 allows remote attackers to inject arbitrary web script or HTML via the IP parameter to script/statistics/getconn.php.
CWE-79 Sep 21, 2016
CVE-2016-4968 6.5 MEDIUM EPSS 0.03
Fortinet Fortiwan < 4.2.4 - Information Disclosure
The linkreport/tmp/admin_global page in Fortinet FortiWan (formerly AscernLink) before 4.2.5 allows remote authenticated users to discover administrator cookies via a GET request.
CWE-200 Sep 21, 2016
CVE-2016-4967 6.5 MEDIUM EPSS 0.02
Fortinet Fortiwan < 4.2.4 - Information Disclosure
Fortinet FortiWan (formerly AscernLink) before 4.2.5 allows remote authenticated users to obtain sensitive information from (1) a backup of the device configuration via script/cfg_show.php or (2) PCAP files via script/system/tcpdump.php.
CWE-200 Sep 21, 2016
CVE-2016-4966 6.5 MEDIUM EPSS 0.02
Fortinet Fortiwan < 4.2.4 - Authentication Bypass
The diagnosis_control.php page in Fortinet FortiWan (formerly AscernLink) before 4.2.5 allows remote authenticated users to download PCAP files via vectors related to the UserName GET parameter.
CWE-287 Sep 21, 2016