CVE & Exploit Intelligence Database

Updated 1h ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

338,223 CVEs tracked 53,280 with exploits 4,730 exploited in wild 1,542 CISA KEV 3,929 Nuclei templates 37,826 vendors 42,569 researchers
110,849 results Clear all
CVE-2015-4598 6.5 MEDIUM EPSS 0.01
Redhat Enterprise Linux Desktop < 5.4.41 - Improper Input Validation
PHP before 5.4.42, 5.5.x before 5.5.26, and 5.6.x before 5.6.10 does not ensure that pathnames lack %00 sequences, which might allow remote attackers to read or write to arbitrary files via crafted input to an application that calls (1) a DOMDocument save method or (2) the GD imagepsloadfont function, as demonstrated by a filename\0.html attack that bypasses an intended configuration in which client users may write to only .html files.
CWE-20 May 16, 2016
CVE-2015-3412 5.3 MEDIUM EPSS 0.01
PHP <5.4.40, 5.5.x <5.5.24, 5.6.x <5.6.8 - Info Disclosure
PHP before 5.4.40, 5.5.x before 5.5.24, and 5.6.x before 5.6.8 does not ensure that pathnames lack %00 sequences, which might allow remote attackers to read arbitrary files via crafted input to an application that calls the stream_resolve_include_path function in ext/standard/streamsfuncs.c, as demonstrated by a filename\0.extension attack that bypasses an intended configuration in which client users may read files with only one specific extension.
CWE-254 May 16, 2016
CVE-2015-3411 6.5 MEDIUM EPSS 0.00
PHP <5.4.40, 5.5.x <5.5.24, 5.6.x <5.6.8 - Info Disclosure
PHP before 5.4.40, 5.5.x before 5.5.24, and 5.6.x before 5.6.8 does not ensure that pathnames lack %00 sequences, which might allow remote attackers to read or write to arbitrary files via crafted input to an application that calls (1) a DOMDocument load method, (2) the xmlwriter_open_uri function, (3) the finfo_file function, or (4) the hash_hmac_file function, as demonstrated by a filename\0.xml attack that bypasses an intended configuration in which client users may read only .xml files.
CWE-20 May 16, 2016
CVE-2015-3152 5.9 MEDIUM 1 PoC Analysis EPSS 0.52
Oracle MySQL <5.7.3 & MariaDB <5.5.44 - Info Disclosure
Oracle MySQL before 5.7.3, Oracle MySQL Connector/C (aka libmysqlclient) before 6.1.3, and MariaDB before 5.5.44 use the --ssl option to mean that SSL is optional, which allows man-in-the-middle attackers to spoof servers via a cleartext-downgrade attack, aka a "BACKRONYM" attack.
CWE-295 May 16, 2016
CVE-2016-0390 5.4 MEDIUM EPSS 0.00
IBM Algorithmics Algo One Algo Risk App <5.1.0 - XSS
Cross-site scripting (XSS) vulnerability in IBM Algorithmics Algo One Algo Risk Application (ARA) 4.9.1 through 5.1.0 allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL.
CWE-79 May 15, 2016
CVE-2016-0381 4.3 MEDIUM EPSS 0.00
IBM Cognos TM1 <10.2.2 - DoS
IBM Cognos TM1 10.2.2 before FP5, when the host/pmhub/pm/admin AdminGroups setting is empty, allows remote authenticated users to cause a denial of service (configuration outage) via a non-empty value.
CWE-20 May 15, 2016
CVE-2016-1670 5.3 MEDIUM EPSS 0.01
Google Chrome <50.0.2661.102 - RCE
Race condition in the ResourceDispatcherHostImpl::BeginRequest function in content/browser/loader/resource_dispatcher_host_impl.cc in Google Chrome before 50.0.2661.102 allows remote attackers to make arbitrary HTTP requests by leveraging access to a renderer process and reusing a request ID.
CWE-362 May 14, 2016
CVE-2016-1665 6.5 MEDIUM 1 PoC Analysis EPSS 0.02
Google V8 <50.0.2661.94 - Info Disclosure
The JSGenericLowering class in compiler/js-generic-lowering.cc in Google V8, as used in Google Chrome before 50.0.2661.94, mishandles comparison operators, which allows remote attackers to obtain sensitive information via crafted JavaScript code.
CWE-20 May 14, 2016
CVE-2016-1664 4.3 MEDIUM 1 PoC Analysis EPSS 0.01
Google Chrome <50.0.2661.94 - Info Disclosure
The HistoryController::UpdateForCommit function in content/renderer/history_controller.cc in Google Chrome before 50.0.2661.94 mishandles the interaction between subframe forward navigations and other forward navigations, which allows remote attackers to spoof the address bar via a crafted web site.
CWE-254 May 14, 2016
CVE-2016-1207 5.4 MEDIUM EPSS 0.00
I-O DATA DEVICE - XSS
Cross-site scripting (XSS) vulnerability on I-O DATA DEVICE WN-G300R devices with firmware 1.12 and earlier, WN-G300R2 devices with firmware 1.12 and earlier, and WN-G300R3 devices with firmware 1.01 and earlier allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
CWE-79 May 14, 2016
CVE-2016-1206 4.3 MEDIUM EPSS 0.00
I-O DATA DEVICE - Info Disclosure
The WPS implementation on I-O DATA DEVICE WN-GDN/R3, WN-GDN/R3-C, WN-GDN/R3-S, and WN-GDN/R3-U devices does not limit PIN guesses, which allows remote attackers to obtain network access via a brute-force attack.
CWE-200 May 14, 2016
CVE-2016-2016 5.5 MEDIUM EPSS 0.00
HPE HP-UX 11iv3 - Privilege Escalation
Base-VxFS-50 B.05.00.01 through B.05.00.02, Base-VxFS-501 B.05.01.0 through B.05.01.03, and Base-VxFS-51 B.05.10.00 through B.05.10.02 on HPE HP-UX 11iv3 with VxFS 5.0, VxFS 5.0.1, and VxFS 5.1SP1 mishandles ACL inheritance for default:class: entries, default:other: entries, and default:user: entries, which allows local users to bypass intended access restrictions by leveraging the configuration of a parent directory.
CWE-284 May 14, 2016
CVE-2015-8530 6.5 MEDIUM EPSS 0.01
IBM SPSS Statistics <20.0.0.2-IF0008, <21.0.0.2-IF0010, <22.0.0.2-I...
Stack-based buffer overflow in the Initialize function in an ActiveX control in IBM SPSS Statistics 19 and 20 before 20.0.0.2-IF0008, 21 before 21.0.0.2-IF0010, 22 before 22.0.0.2-IF0011, 23 before 23.0.0.3-IF0001, and 24 before 24.0.0.0-IF0003 allows remote authenticated users to execute arbitrary code via a long argument.
CWE-119 May 14, 2016
CVE-2016-4536 5.3 MEDIUM EPSS 0.00
Openafs < 1.6.16 - Information Disclosure
The client in OpenAFS before 1.6.17 does not properly initialize the (1) AFSStoreStatus, (2) AFSStoreVolumeStatus, (3) VldbListByAttributes, and (4) ListAddrByAttributes structures, which might allow remote attackers to obtain sensitive memory information by leveraging access to RPC call traffic.
CWE-200 May 13, 2016
CVE-2016-2860 6.5 MEDIUM EPSS 0.00
Openafs < 1.6.16 - Improper Access Control
The newEntry function in ptserver/ptprocs.c in OpenAFS before 1.6.17 allows remote authenticated users from foreign Kerberos realms to bypass intended access restrictions and create arbitrary groups as administrators by leveraging mishandling of the creator ID.
CWE-284 May 13, 2016
CVE-2015-8099 5.9 MEDIUM EPSS 0.01
F5 BIG-IP <12.0.0 HF1 - Multiple Vulns
F5 BIG-IP LTM, AFM, Analytics, APM, ASM, Link Controller, and PEM 11.3.x, 11.4.x before 11.4.1 HF10, 11.5.x before 11.5.4, 11.6.x before 11.6.1, and 12.x before 12.0.0 HF1; BIG-IP AAM 11.4.x before 11.4.1 HF10, 11.5.x before 11.5.4, 11.6.x before 11.6.1, and 12.x before 12.0.0 HF1; BIG-IP DNS 12.x before 12.0.0 HF1; BIG-IP Edge Gateway, WebAccelerator, and WOM 11.3.0; BIG-IP GTM 11.3.x, 11.4.x before 11.4.1 HF10, 11.5.x before 11.5.4, and 11.6.x before 11.6.1; BIG-IP PSM 11.3.x and 11.4.x before 11.4.1 HF10; Enterprise Manager 3.0.0 through 3.1.1; BIG-IQ Cloud and BIG-IQ Security 4.0.0 through 4.5.0; BIG-IQ Device 4.2.0 through 4.5.0; BIG-IQ ADC 4.5.0; BIG-IQ Centralized Management 4.6.0; and BIG-IQ Cloud and Orchestration 1.0.0 on the 3900, 6900, 8900, 8950, 11000, 11050, PB100 and PB200 platforms, when software SYN cookies are configured on virtual servers, allow remote attackers to cause a denial of service (High-Speed Bridge hang) via an invalid TCP segment.
CWE-20 May 13, 2016
CVE-2016-4499 4.2 MEDIUM EPSS 0.00
Panasonic Fpwin Pro - Memory Corruption
Heap-based buffer overflow in Panasonic FPWIN Pro 5.x through 7.x before 7.130 allows local users to cause a denial of service (application crash) via unspecified vectors.
CWE-119 May 12, 2016
CVE-2016-4498 5.5 MEDIUM EPSS 0.00
Panasonic Fpwin Pro - Improper Input Validation
Panasonic FPWIN Pro 5.x through 7.x before 7.130 accesses an uninitialized pointer, which allows local users to cause a denial of service or possibly have unspecified other impact via unknown vectors.
CWE-20 May 12, 2016
CVE-2016-4497 4.2 MEDIUM EPSS 0.00
Panasonic Fpwin Pro - Improper Input Validation
Panasonic FPWIN Pro 5.x through 7.x before 7.130 allows local users to cause a denial of service or possibly have unspecified other impact via vectors that leverage "type confusion."
CWE-20 May 12, 2016
CVE-2016-4496 4.2 MEDIUM EPSS 0.00
Panasonic Fpwin Pro - Memory Corruption
Panasonic FPWIN Pro 5.x through 7.x before 7.130 allows local users to cause a denial of service (out-of-bounds write) or possibly have unspecified other impact by triggering a crafted index value, as demonstrated by an integer overflow.
CWE-119 May 12, 2016