CVE & Exploit Intelligence Database

Updated 2h ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

338,223 CVEs tracked 53,278 with exploits 4,730 exploited in wild 1,542 CISA KEV 3,929 Nuclei templates 37,826 vendors 42,568 researchers
110,849 results Clear all
CVE-2016-4085 5.9 MEDIUM EPSS 0.01
Wireshark <1.12.11 - Buffer Overflow
Stack-based buffer overflow in epan/dissectors/packet-ncp2222.inc in the NCP dissector in Wireshark 1.12.x before 1.12.11 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a long string in a packet.
CWE-20 Apr 25, 2016
CVE-2016-4084 5.9 MEDIUM EPSS 0.00
Wireshark <2.0.3 - DoS
Integer signedness error in epan/dissectors/packet-mswsp.c in the MS-WSP dissector in Wireshark 2.0.x before 2.0.3 allows remote attackers to cause a denial of service (integer overflow and application crash) via a crafted packet that triggers an unexpected array size.
Apr 25, 2016
CVE-2016-4083 5.9 MEDIUM EPSS 0.00
Wireshark <2.0.3 - DoS
epan/dissectors/packet-mswsp.c in the MS-WSP dissector in Wireshark 2.0.x before 2.0.3 does not ensure that data is available before array allocation, which allows remote attackers to cause a denial of service (application crash) via a crafted packet.
CWE-20 Apr 25, 2016
CVE-2016-4082 5.9 MEDIUM EPSS 0.00
Wireshark <1.12.11-2.0.3 - DoS
epan/dissectors/packet-gsm_cbch.c in the GSM CBCH dissector in Wireshark 1.12.x before 1.12.11 and 2.0.x before 2.0.3 uses the wrong variable to index an array, which allows remote attackers to cause a denial of service (out-of-bounds access and application crash) via a crafted packet.
CWE-119 Apr 25, 2016
CVE-2016-4081 5.9 MEDIUM EPSS 0.00
Wireshark <1.12.11-2.0.3 - DoS
epan/dissectors/packet-iax2.c in the IAX2 dissector in Wireshark 1.12.x before 1.12.11 and 2.0.x before 2.0.3 uses an incorrect integer data type, which allows remote attackers to cause a denial of service (infinite loop) via a crafted packet.
CWE-284 Apr 25, 2016
CVE-2016-4080 5.9 MEDIUM EPSS 0.00
Wireshark <1.12.11-2.0.3 - DoS
epan/dissectors/packet-pktc.c in the PKTC dissector in Wireshark 1.12.x before 1.12.11 and 2.0.x before 2.0.3 misparses timestamp fields, which allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted packet.
CWE-119 Apr 25, 2016
CVE-2016-4079 5.9 MEDIUM EPSS 0.00
Wireshark <1.12.11-2.0.3 - DoS
epan/dissectors/packet-pktc.c in the PKTC dissector in Wireshark 1.12.x before 1.12.11 and 2.0.x before 2.0.3 does not verify BER identifiers, which allows remote attackers to cause a denial of service (out-of-bounds write and application crash) via a crafted packet.
CWE-119 Apr 25, 2016
CVE-2016-4078 5.9 MEDIUM EPSS 0.00
Wireshark <2.0.3 - DoS
The IEEE 802.11 dissector in Wireshark 1.12.x before 1.12.11 and 2.0.x before 2.0.3 does not properly restrict element lists, which allows remote attackers to cause a denial of service (deep recursion and application crash) via a crafted packet, related to epan/dissectors/packet-capwap.c and epan/dissectors/packet-ieee80211.c.
CWE-20 Apr 25, 2016
CVE-2016-4077 5.9 MEDIUM EPSS 0.00
Wireshark <2.0.3 - DoS
epan/reassemble.c in TShark in Wireshark 2.0.x before 2.0.3 relies on incorrect special-case handling of truncated Tvb data structures, which allows remote attackers to cause a denial of service (use-after-free and application crash) via a crafted packet.
Apr 25, 2016
CVE-2016-4076 5.9 MEDIUM EPSS 0.00
Wireshark <2.0.3 - DoS
epan/dissectors/packet-ncp2222.inc in the NCP dissector in Wireshark 2.0.x before 2.0.3 does not properly initialize memory for search patterns, which allows remote attackers to cause a denial of service (application crash) via a crafted packet.
CWE-284 Apr 25, 2016
CVE-2016-4006 5.9 MEDIUM EPSS 0.00
Wireshark <1.12.11-2.0.3 - DoS
epan/proto.c in Wireshark 1.12.x before 1.12.11 and 2.0.x before 2.0.3 does not limit the protocol-tree depth, which allows remote attackers to cause a denial of service (stack memory consumption and application crash) via a crafted packet.
CWE-119 Apr 25, 2016
CVE-2016-2115 5.9 MEDIUM EPSS 0.24
Canonical Ubuntu Linux - Security Feature Bypass
Samba 3.x and 4.x before 4.2.11, 4.3.x before 4.3.8, and 4.4.x before 4.4.2 does not require SMB signing within a DCERPC session over ncacn_np, which allows man-in-the-middle attackers to spoof SMB clients by modifying the client-server data stream.
CWE-254 Apr 25, 2016
CVE-2016-2114 5.9 MEDIUM EPSS 0.09
Samba - Security Feature Bypass
The SMB1 protocol implementation in Samba 4.x before 4.2.11, 4.3.x before 4.3.8, and 4.4.x before 4.4.2 does not recognize the "server signing = mandatory" setting, which allows man-in-the-middle attackers to spoof SMB servers by modifying the client-server data stream.
CWE-254 Apr 25, 2016
CVE-2016-2112 5.9 MEDIUM EPSS 0.18
Samba - Security Feature Bypass
The bundled LDAP client library in Samba 3.x and 4.x before 4.2.11, 4.3.x before 4.3.8, and 4.4.x before 4.4.2 does not recognize the "client ldap sasl wrapping" setting, which allows man-in-the-middle attackers to perform LDAP protocol-downgrade attacks by modifying the client-server data stream.
CWE-254 Apr 25, 2016
CVE-2016-2111 6.3 MEDIUM EPSS 0.03
Samba - Security Feature Bypass
The NETLOGON service in Samba 3.x and 4.x before 4.2.11, 4.3.x before 4.3.8, and 4.4.x before 4.4.2, when a domain controller is configured, allows remote attackers to spoof the computer name of a secure channel's endpoint, and obtain sensitive session information, by running a crafted application and leveraging the ability to sniff network traffic, a related issue to CVE-2015-0005.
CWE-254 Apr 25, 2016
CVE-2016-2110 5.9 MEDIUM EPSS 0.20
Samba - Security Feature Bypass
The NTLMSSP authentication implementation in Samba 3.x and 4.x before 4.2.11, 4.3.x before 4.3.8, and 4.4.x before 4.4.2 allows man-in-the-middle attackers to perform protocol-downgrade attacks by modifying the client-server data stream to remove application-layer flags or encryption settings, as demonstrated by clearing the NTLMSSP_NEGOTIATE_SEAL or NTLMSSP_NEGOTIATE_SIGN option to disrupt LDAP security.
CWE-254 Apr 25, 2016
CVE-2015-5370 5.9 MEDIUM EPSS 0.24
Samba <4.2.11-4.4.2 - DoS/Privilege Escalation
Samba 3.x and 4.x before 4.2.11, 4.3.x before 4.3.8, and 4.4.x before 4.4.2 does not properly implement the DCE-RPC layer, which allows remote attackers to perform protocol-downgrade attacks, cause a denial of service (application crash or CPU consumption), or possibly execute arbitrary code on a client system via unspecified vectors.
Apr 25, 2016
CVE-2016-3126 6.1 MEDIUM EPSS 0.00
Blackberry Enterprise Server < 12.4 - XSS
Cross-site scripting (XSS) vulnerability in the Management Console in BlackBerry Enterprise Server (BES) 12 before 12.4.1 allows remote attackers to inject arbitrary web script or HTML via a crafted URL.
CWE-79 Apr 22, 2016
CVE-2016-1918 6.1 MEDIUM EPSS 0.00
BlackBerry Enterprise Server <12.4.1 - XSS
Cross-site scripting (XSS) vulnerability in the Management Console in BlackBerry Enterprise Server (BES) 12 before 12.4.1 allows remote attackers to inject arbitrary web script or HTML via a crafted URL, a different vulnerability than CVE-2016-1917.
CWE-79 Apr 22, 2016
CVE-2016-1917 6.1 MEDIUM EPSS 0.00
BlackBerry Enterprise Server <12.4.1 - XSS
Cross-site scripting (XSS) vulnerability in the Management Console in BlackBerry Enterprise Server (BES) 12 before 12.4.1 allows remote attackers to inject arbitrary web script or HTML via a crafted URL, a different vulnerability than CVE-2016-1918.
CWE-79 Apr 22, 2016