CVE & Exploit Intelligence Database

Updated 3h ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

338,223 CVEs tracked 53,283 with exploits 4,731 exploited in wild 1,542 CISA KEV 3,930 Nuclei templates 37,826 vendors 42,577 researchers
110,849 results Clear all
CVE-2016-3567 5.4 MEDIUM EPSS 0.00
Oracle Primavera <16.1 - Info Disclosure
Unspecified vulnerability in the Primavera P6 Enterprise Project Portfolio Management component in Oracle Primavera Products Suite 8.3, 8.4, 15.1, 15.2, and 16.1 allows remote authenticated users to affect confidentiality and integrity via vectors related to Web access.
Jul 21, 2016
CVE-2016-3566 6.1 MEDIUM EPSS 0.00
Oracle Primavera Products Suite <16.1 - Info Disclosure
Unspecified vulnerability in the Primavera P6 Enterprise Project Portfolio Management component in Oracle Primavera Products Suite 8.3, 8.4, 15.1, 15.2, and 16.1 allows remote attackers to affect confidentiality and integrity via vectors related to Web access, a different vulnerability than CVE-2016-3568, CVE-2016-3569, CVE-2016-3570, CVE-2016-3571, and CVE-2016-3573.
Jul 21, 2016
CVE-2016-3563 6.3 MEDIUM EPSS 0.00
Oracle Enterprise Manager Grid Control <12.1.0.5 - Info Disclosure
Unspecified vulnerability in the Enterprise Manager Base Platform component in Oracle Enterprise Manager Grid Control 12.1.0.5 allows local users to affect confidentiality and integrity via vectors related to Security Framework, a different vulnerability than CVE-2016-5604.
Jul 21, 2016
CVE-2016-3560 5.3 MEDIUM EPSS 0.00
Oracle Agile PLM - Info Disclosure
Unspecified vulnerability in the Oracle Agile PLM component in Oracle Supply Chain Products Suite 9.3.4 and 9.3.5 allows remote attackers to affect confidentiality via vectors related to SDK, a different vulnerability than CVE-2016-3526 and CVE-2016-3529.
Jul 21, 2016
CVE-2016-3559 4.7 MEDIUM EPSS 0.00
Oracle E-Business Suite <12.2.5 - Info Disclosure
Unspecified vulnerability in the Oracle Email Center component in Oracle E-Business Suite 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, and 12.2.5 allows remote attackers to affect integrity via vectors related to Email Center Agent Console, a different vulnerability than CVE-2016-3558.
Jul 21, 2016
CVE-2016-3558 4.7 MEDIUM EPSS 0.00
Oracle E-Business Suite <12.2.5 - Info Disclosure
Unspecified vulnerability in the Oracle Email Center component in Oracle E-Business Suite 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, and 12.2.5 allows remote attackers to affect integrity via vectors related to Email Center Agent Console, a different vulnerability than CVE-2016-3559.
Jul 21, 2016
CVE-2016-3557 6.1 MEDIUM EPSS 0.00
Oracle Agile PLM - Info Disclosure
Unspecified vulnerability in the Oracle Agile PLM component in Oracle Supply Chain Products Suite 9.3.4 and 9.3.5 allows remote attackers to affect confidentiality and integrity via vectors related to File Load.
Jul 21, 2016
CVE-2016-3555 6.1 MEDIUM EPSS 0.00
Oracle Agile PLM <9.3.4,9.3.5 - Info Disclosure
Unspecified vulnerability in the Oracle Agile PLM component in Oracle Supply Chain Products Suite 9.3.4 and 9.3.5 allows remote attackers to affect confidentiality and integrity via vectors related to PGC / Excel Plugin.
Jul 21, 2016
CVE-2016-3553 5.4 MEDIUM EPSS 0.00
Oracle Agile PLM <9.3.4,9.3.5 - Info Disclosure
Unspecified vulnerability in the Oracle Agile PLM component in Oracle Supply Chain Products Suite 9.3.4 and 9.3.5 allows remote authenticated users to affect confidentiality and integrity via vectors related to PC Core.
Jul 21, 2016
CVE-2016-3550 4.3 MEDIUM EPSS 0.02
Oracle Java SE <8u92 - Info Disclosure
Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92 and Java SE Embedded 8u91 allows remote attackers to affect confidentiality via vectors related to Hotspot.
Jul 21, 2016
CVE-2016-3549 5.3 MEDIUM EPSS 0.00
Oracle E-Business Suite <12.2.5 - Info Disclosure
Unspecified vulnerability in the Oracle E-Business Suite Secure Enterprise Search component in Oracle E-Business Suite 12.1.3, 12.2.3, 12.2.4, and 12.2.5 allows remote attackers to affect confidentiality via vectors related to Search Integration Engine.
Jul 21, 2016
CVE-2016-3548 5.3 MEDIUM EPSS 0.00
Oracle E-Business Suite <12.2.5 - Info Disclosure
Unspecified vulnerability in the Oracle Marketing component in Oracle E-Business Suite 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, and 12.2.5 allows remote attackers to affect confidentiality via vectors related to Marketing activity collateral.
Jul 21, 2016
CVE-2016-3547 5.3 MEDIUM EPSS 0.00
Oracle E-Business Suite <12.2.5 - Info Disclosure
Unspecified vulnerability in the Oracle One-to-One Fulfillment component in Oracle E-Business Suite 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, and 12.2.5 allows remote attackers to affect confidentiality via vectors related to Content Manager.
Jul 21, 2016
CVE-2016-3545 5.3 MEDIUM EPSS 0.00
Oracle Application Object Library - Info Disclosure
Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Suite 12.1.3, 12.2.3, 12.2.4, and 12.2.5 allows remote attackers to affect confidentiality via vectors related to Web based help screens.
Jul 21, 2016
CVE-2016-3542 6.5 MEDIUM 1 PoC Analysis EPSS 0.28
Oracle E- Business Suite <12.2.5 - Info Disclosure
Unspecified vulnerability in the Oracle Knowledge Management component in Oracle E-Business Suite 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, and 12.2.5 allows remote administrators to affect confidentiality and integrity via unknown vectors.
Jul 21, 2016
CVE-2016-3540 4.3 MEDIUM EPSS 0.00
Oracle Enterprise Manager <13.1.0.0 - Info Disclosure
Unspecified vulnerability in the Enterprise Manager Base Platform component in Oracle Enterprise Manager Grid Control 12.1.0.5 and 13.1.0.0 allows remote attackers to affect confidentiality via vectors related to UI Framework.
Jul 21, 2016
CVE-2016-3537 6.5 MEDIUM EPSS 0.00
Oracle Agile PLM - Info Disclosure
Unspecified vulnerability in the Oracle Agile PLM component in Oracle Supply Chain Products Suite 9.3.4 and 9.3.5 allows remote authenticated users to affect confidentiality via vectors related to File Folders / Attachment, a different vulnerability than CVE-2016-5473.
Jul 21, 2016
CVE-2016-3534 4.7 MEDIUM EPSS 0.01
Oracle E-Business Suite <12.2.5 - Info Disclosure
Unspecified vulnerability in the Oracle Installed Base component in Oracle E-Business Suite 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, and 12.2.5 allows remote attackers to affect integrity via vectors related to Engineering Change Order. NOTE: the previous information is from the July 2016 CPU. Oracle has not commented on third-party claims that this issue involves an open redirect vulnerability, which allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.
Jul 21, 2016
CVE-2016-3533 4.7 MEDIUM EPSS 0.01
Oracle E-Business Suite <12.2.5 - Info Disclosure
Unspecified vulnerability in the Oracle Knowledge Management component in Oracle E-Business Suite 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, and 12.2.5 allows remote attackers to affect integrity via vectors related to Search. NOTE: the previous information is from the July 2016 CPU. Oracle has not commented on third-party claims that this issue involves multiple open redirect vulnerabilities, which allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.
Jul 21, 2016
CVE-2016-3529 5.8 MEDIUM EPSS 0.00
Oracle Agile PLM - Info Disclosure
Unspecified vulnerability in the Oracle Agile PLM component in Oracle Supply Chain Products Suite 9.3.4 and 9.3.5 allows remote attackers to affect confidentiality via vectors related to SDK, a different vulnerability than CVE-2016-3526 and CVE-2016-3560.
Jul 21, 2016