CVE & Exploit Intelligence Database

Updated 2h ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

338,223 CVEs tracked 53,283 with exploits 4,731 exploited in wild 1,542 CISA KEV 3,930 Nuclei templates 37,826 vendors 42,577 researchers
110,849 results Clear all
CVE-2016-3525 5.9 MEDIUM EPSS 0.01
Oracle E-Business Suite 12.1.3 - Info Disclosure
Unspecified vulnerability in the Oracle Applications Manager component in Oracle E-Business Suite 12.1.3 allows remote attackers to affect confidentiality via vectors related to Cookie Management.
Jul 21, 2016
CVE-2016-3524 5.4 MEDIUM EPSS 0.00
Oracle E-Business Suite <12.2.5 - Info Disclosure
Unspecified vulnerability in the Oracle Applications Technology Stack component in Oracle E-Business Suite 12.1.3, 12.2.3, 12.2.4, and 12.2.5 allows remote attackers to affect confidentiality and integrity via vectors related to Configuration.
Jul 21, 2016
CVE-2016-3523 4.7 MEDIUM EPSS 0.00
Oracle E-Business Suite <12.2.5 - Info Disclosure
Unspecified vulnerability in the Oracle Web Applications Desktop Integrator component in Oracle E-Business Suite 12.1.3, 12.2.3, 12.2.4, and 12.2.5 allows remote attackers to affect integrity via vectors related to Application Service.
Jul 21, 2016
CVE-2016-3521 6.5 MEDIUM EPSS 0.01
Oracle MySQL <5.5.49, <5.6.30, <5.7.12 - DoS
Unspecified vulnerability in Oracle MySQL 5.5.49 and earlier, 5.6.30 and earlier, and 5.7.12 and earlier and MariaDB before 5.5.50, 10.0.x before 10.0.26, and 10.1.x before 10.1.15 allows remote authenticated users to affect availability via vectors related to Server: Types.
Jul 21, 2016
CVE-2016-3520 4.9 MEDIUM EPSS 0.00
Oracle E-Business Suite <12.2.5 - Info Disclosure
Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Suite 12.1.3, 12.2.3, 12.2.4, and 12.2.5 allows remote administrators to affect confidentiality via vectors related to AOL Diagnostic tests.
Jul 21, 2016
CVE-2016-3519 6.1 MEDIUM EPSS 0.00
Oracle Agile PLM - Info Disclosure
Unspecified vulnerability in the Oracle Agile PLM component in Oracle Supply Chain Products Suite 9.3.4 and 9.3.5 allows remote attackers to affect confidentiality and integrity via vectors related to PC / Get Shortcut.
Jul 21, 2016
CVE-2016-3518 6.5 MEDIUM EPSS 0.02
Oracle MySQL <5.7.12 - DoS
Unspecified vulnerability in Oracle MySQL 5.7.12 and earlier allows remote authenticated users to affect availability via vectors related to Server: Optimizer.
Jul 21, 2016
CVE-2016-3517 4.3 MEDIUM EPSS 0.00
Oracle Agile PLM <9.3.4-9.3.5 - Info Disclosure
Unspecified vulnerability in the Oracle Agile PLM component in Oracle Supply Chain Products Suite 9.3.4 and 9.3.5 allows remote attackers to affect integrity via vectors related to PC / Get Shortcut.
Jul 21, 2016
CVE-2016-3514 6.5 MEDIUM EPSS 0.01
Oracle Enterprise Communications Broker <PCz 2.0.0m4p1 - Info Discl...
Unspecified vulnerability in the Oracle Enterprise Communications Broker component in Oracle Communications Applications before PCz 2.0.0m4p1 allows remote authenticated users to affect confidentiality via vectors related to GUI, a different vulnerability than CVE-2016-3516.
Jul 21, 2016
CVE-2016-3513 6.5 MEDIUM EPSS 0.01
Oracle Communications <3.3.92.0.0 - Info Disclosure
Unspecified vulnerability in the Oracle Communications Operations Monitor component in Oracle Communications Applications before 3.3.92.0.0 allows remote authenticated users to affect confidentiality via vectors related to Infrastructure.
Jul 21, 2016
CVE-2016-3509 5.4 MEDIUM EPSS 0.00
Oracle Agile PLM - Info Disclosure
Unspecified vulnerability in the Oracle Agile PLM component in Oracle Supply Chain Products Suite 9.3.4 and 9.3.5 allows remote authenticated users to affect confidentiality and integrity via vectors related to File Folders / URL Attachment.
Jul 21, 2016
CVE-2016-3508 5.3 MEDIUM EPSS 0.09
Oracle Java SE - DoS
Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92; Java SE Embedded 8u91; and JRockit R28.3.10 allows remote attackers to affect availability via vectors related to JAXP, a different vulnerability than CVE-2016-3500.
Jul 21, 2016
CVE-2016-3507 4.3 MEDIUM EPSS 0.00
Oracle Agile PLM <9.3.4-9.3.5 - Info Disclosure
Unspecified vulnerability in the Oracle Agile PLM component in Oracle Supply Chain Products Suite 9.3.4 and 9.3.5 allows remote attackers to affect integrity via vectors related to WebClient / Admin.
Jul 21, 2016
CVE-2016-3502 6.5 MEDIUM EPSS 0.00
Oracle WebCenter Sites - Info Disclosure
Unspecified vulnerability in the Oracle WebCenter Sites component in Oracle Fusion Middleware 11.1.1.8 and 12.2.1.0 allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors.
Jul 21, 2016
CVE-2016-3501 6.5 MEDIUM EPSS 0.01
Oracle MySQL <5.6.31, <5.7.13 - DoS
Unspecified vulnerability in Oracle MySQL 5.6.30 and earlier and 5.7.12 and earlier allows remote authenticated users to affect availability via vectors related to Server: Optimizer.
Jul 21, 2016
CVE-2016-3500 5.3 MEDIUM EPSS 0.12
Oracle Java SE <8 - DoS
Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92; Java SE Embedded 8u91; and JRockit R28.3.10 allows remote attackers to affect availability via vectors related to JAXP, a different vulnerability than CVE-2016-3508.
Jul 21, 2016
CVE-2016-3498 5.3 MEDIUM EPSS 0.08
Oracle Java SE <7u101,8u92 - DoS
Unspecified vulnerability in Oracle Java SE 7u101 and 8u92 allows remote attackers to affect availability via vectors related to JavaFX.
Jul 21, 2016
CVE-2016-3497 5.5 MEDIUM EPSS 0.00
Oracle Sun Solaris 11.3 - DoS
Unspecified vulnerability in Oracle Sun Solaris 11.3 allows local users to affect availability via vectors related to Kernel, a different vulnerability than CVE-2016-5469 and CVE-2016-5471.
Jul 21, 2016
CVE-2016-3496 4.7 MEDIUM EPSS 0.00
Oracle Enterprise Manager <11.1.1.9 - Info Disclosure
Unspecified vulnerability in the Enterprise Manager for Fusion Middleware component in Oracle Enterprise Manager Grid Control 11.1.1.7, and 11.1.1.9 allows remote attackers to affect confidentiality via vectors related to SOA Topology Viewer.
Jul 21, 2016
CVE-2016-3494 6.5 MEDIUM EPSS 0.01
Oracle Enterprise Manager Grid Control <12.3.2 - DoS
Unspecified vulnerability in the Enterprise Manager Ops Center component in Oracle Enterprise Manager Grid Control 12.1.4, 12.2.2, and 12.3.2 allows remote attackers to affect availability via vectors related to OS Provisioning.
Jul 21, 2016