CVE & Exploit Intelligence Database

Updated 2h ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

338,263 CVEs tracked 53,300 with exploits 4,731 exploited in wild 1,542 CISA KEV 3,930 Nuclei templates 48,906 vendors 42,593 researchers
110,849 results Clear all
CVE-2016-3897 5.5 MEDIUM EPSS 0.00
Android <4.4.4, <5.0.2, <5.1.1, <2016-09-01 - Info Disclosure
The WifiEnterpriseConfig class in net/wifi/WifiEnterpriseConfig.java in Wi-Fi in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-09-01 includes a password in the return value of a toString method call, which allows attackers to obtain sensitive information via a crafted application, aka internal bug 25624963.
CWE-200 Sep 11, 2016
CVE-2016-3896 5.5 MEDIUM EPSS 0.00
AOSP Mail <4.4.4, <5.0.2, <5.1.1, <2016-09-01 - Info Disclosure
AOSP Mail in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-09-01 allows attackers to obtain sensitive EmailAccountCacheProvider information via a crafted application, aka internal bug 29767043.
CWE-200 Sep 11, 2016
CVE-2016-3895 5.5 MEDIUM EPSS 0.00
Android <6.0.1 & 7.0 - Info Disclosure
Integer overflow in the Region::unflatten function in libs/ui/Region.cpp in mediaserver in Android 6.x before 2016-09-01 and 7.0 before 2016-09-01 allows attackers to obtain sensitive information via a crafted application, aka internal bug 29983260.
CWE-190 Sep 11, 2016
CVE-2016-3894 5.5 MEDIUM EPSS 0.00
Android <2016-09-05 - Info Disclosure
The Qualcomm DMA component in Android before 2016-09-05 on Nexus 6 devices allows attackers to obtain sensitive information via a crafted application, aka Android internal bug 29618014 and Qualcomm internal bug CR1042033.
CWE-200 Sep 11, 2016
CVE-2016-3893 5.5 MEDIUM 1 PoC Analysis EPSS 0.00
Qualcomm sound codec - Info Disclosure
The wcdcal_hwdep_ioctl_shared function in sound/soc/codecs/wcdcal-hwdep.c in the Qualcomm sound codec in Android before 2016-09-05 on Nexus 6P devices does not properly copy firmware data, which allows attackers to obtain sensitive information via a crafted application, aka Android internal bug 29512527 and Qualcomm internal bug CR856400.
CWE-200 Sep 11, 2016
CVE-2016-3892 5.5 MEDIUM EPSS 0.00
Qualcomm SPMI - Info Disclosure
The Qualcomm SPMI driver in Android before 2016-09-05 on Nexus 5, 5X, 6, and 6P devices allows attackers to obtain sensitive information via a crafted application, aka Android internal bug 28760543 and Qualcomm internal bug CR1024197.
CWE-200 Sep 11, 2016
CVE-2016-3889 6.8 MEDIUM EPSS 0.00
Android <6.x-7.0 - Auth Bypass
Android 6.x before 2016-09-01 and 7.0 before 2016-09-01 allows physically proximate attackers to bypass the Factory Reset Protection protection mechanism by accessing (1) an external tile from a system application, (2) the help feature, or (3) the Settings application during a pre-setup stage, aka internal bug 29194585.
CWE-264 Sep 11, 2016
CVE-2016-3886 6.8 MEDIUM EPSS 0.00
Android 7.0 - Privilege Escalation
systemui/statusbar/phone/QuickStatusBarHeader.java in the System UI Tuner in Android 7.0 before 2016-09-01 does not prevent tuner changes on the lockscreen, which allows physically proximate attackers to gain privileges by modifying a setting, aka internal bug 30107438.
CWE-264 Sep 11, 2016
CVE-2016-3884 5.5 MEDIUM EPSS 0.00
Android <6.0.1 & <7.0 - Privilege Escalation
server/notification/NotificationManagerService.java in the Notification Manager Service in Android 6.x before 2016-09-01 and 7.0 before 2016-09-01 lacks uid checks, which allows attackers to bypass intended restrictions on method calls via a crafted application, aka internal bug 29421441.
CWE-284 Sep 11, 2016
CVE-2016-3883 5.5 MEDIUM EPSS 0.00
Android <4.4.4, <5.0.2, <5.1.1, <2016-09-01 - Info Disclosure
internal/telephony/SMSDispatcher.java in Telephony in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-09-01, and 7.0 before 2016-09-01 does not properly construct warnings about premium SMS messages, which allows attackers to spoof the premium-payment confirmation dialog via a crafted application, aka internal bug 28557603.
CWE-284 Sep 11, 2016
CVE-2016-3881 5.5 MEDIUM EPSS 0.00
Android <4.4.4, <5.0.2, <5.1.1, <2016-09-01 - DoS
The decoder_peek_si_internal function in vp9/vp9_dx_iface.c in libvpx in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-09-01, and 7.0 before 2016-09-01 allows remote attackers to cause a denial of service (buffer over-read, and device hang or reboot) via a crafted media file, aka internal bug 30013856.
CWE-119 Sep 11, 2016
CVE-2016-3880 5.5 MEDIUM EPSS 0.00
Android <4.4.4, <5.0.2, <5.1.1, <2016-09-01 - Buffer Overflow
Multiple buffer overflows in rtsp/ASessionDescription.cpp in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-09-01, and 7.0 before 2016-09-01 allow remote attackers to cause a denial of service (device hang or reboot) via a crafted media file, aka internal bug 25747670.
CWE-284 Sep 11, 2016
CVE-2016-3879 5.5 MEDIUM EPSS 0.00
Android <4.4.4, <5.0.2, <5.1.1, <2016-09-01 - DoS
arm-wt-22k/lib_src/eas_mdls.c in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-09-01 allows remote attackers to cause a denial of service (NULL pointer dereference, and device hang or reboot) via a crafted media file, aka internal bug 29770686.
CWE-284 Sep 11, 2016
CVE-2016-3878 5.5 MEDIUM EPSS 0.00
Android <6 - DoS
decoder/ih264d_api.c in mediaserver in Android 6.x before 2016-09-01 mishandles the case of decoding zero MBs, which allows remote attackers to cause a denial of service (device hang or reboot) via a crafted media file, aka internal bug 29493002.
CWE-284 Sep 11, 2016
CVE-2016-3876 6.8 MEDIUM EPSS 0.00
Android <6.x/7.0 - Auth Bypass
providers/settings/SettingsProvider.java in Android 6.x before 2016-09-01 and 7.0 before 2016-09-01 allows physically proximate attackers to bypass the SAFE_BOOT_DISALLOWED protection mechanism and boot to safe mode via the Android Debug Bridge (adb) tool, aka internal bug 29900345.
CWE-264 Sep 11, 2016
CVE-2016-3875 6.8 MEDIUM EPSS 0.00
Android 6.x <2016-09-01 - Privilege Escalation
server/wm/WindowManagerService.java in Android 6.x before 2016-09-01 does not enforce the DISALLOW_SAFE_BOOT setting, which allows physically proximate attackers to bypass intended access restrictions and boot to safe mode via unspecified vectors, aka internal bug 26251884.
CWE-264 Sep 11, 2016
CVE-2016-5165 6.1 MEDIUM EXPLOITED EPSS 0.00
Google Chrome < 52.0.2743.116 - XSS
Cross-site scripting (XSS) vulnerability in the Developer Tools (aka DevTools) subsystem in Google Chrome before 53.0.2785.89 on Windows and OS X and before 53.0.2785.92 on Linux allows remote attackers to inject arbitrary web script or HTML via the settings parameter in a chrome-devtools-frontend.appspot.com URL's query string.
CWE-79 Sep 11, 2016
CVE-2016-5164 6.1 MEDIUM EPSS 0.00
Google Chrome < 52.0.2743.116 - XSS
Cross-site scripting (XSS) vulnerability in WebKit/Source/platform/v8_inspector/V8Debugger.cpp in Blink, as used in Google Chrome before 53.0.2785.89 on Windows and OS X and before 53.0.2785.92 on Linux, allows remote attackers to inject arbitrary web script or HTML into the Developer Tools (aka DevTools) subsystem via a crafted web site, aka "Universal XSS (UXSS)."
CWE-79 Sep 11, 2016
CVE-2016-5163 4.3 MEDIUM EPSS 0.01
Google Chrome < 52.0.2743.116 - Security Feature Bypass
The bidirectional-text implementation in Google Chrome before 53.0.2785.89 on Windows and OS X and before 53.0.2785.92 on Linux does not ensure left-to-right (LTR) rendering of URLs, which allows remote attackers to spoof the address bar via crafted right-to-left (RTL) Unicode text, related to omnibox/SuggestionView.java and omnibox/UrlBar.java in Chrome for Android.
CWE-254 Sep 11, 2016
CVE-2016-5162 6.5 MEDIUM EPSS 0.01
Opensuse Leap < 52.0.2743.116 - Security Feature Bypass
The AllowCrossRendererResourceLoad function in extensions/browser/url_request_util.cc in Google Chrome before 53.0.2785.89 on Windows and OS X and before 53.0.2785.92 on Linux does not properly use an extension's manifest.json web_accessible_resources field for restrictions on IFRAME elements, which makes it easier for remote attackers to conduct clickjacking attacks, and trick users into changing extension settings, via a crafted web site, a different vulnerability than CVE-2016-5160.
CWE-254 Sep 11, 2016