CVE & Exploit Intelligence Database

Updated 3h ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

338,223 CVEs tracked 53,274 with exploits 4,730 exploited in wild 1,542 CISA KEV 3,929 Nuclei templates 37,826 vendors 42,563 researchers
110,849 results Clear all
CVE-2016-1378 5.3 MEDIUM EPSS 0.00
Cisco IOS <15.2(2)E1 - Info Disclosure
Cisco IOS before 15.2(2)E1 on Catalyst switches allows remote attackers to obtain potentially sensitive software-version information via a request to the Network Mobility Services Protocol (NMSP) port, aka Bug ID CSCum62591.
CWE-200 Apr 14, 2016
CVE-2016-0787 5.9 MEDIUM EPSS 0.04
libssh2 <1.7.0 - Info Disclosure
The diffie_hellman_sha256 function in kex.c in libssh2 before 1.7.0 improperly truncates secrets to 128 or 256 bits, which makes it easier for man-in-the-middle attackers to decrypt or intercept SSH sessions via unspecified vectors, aka a "bits/bytes confusion bug."
CWE-200 Apr 13, 2016
CVE-2016-0757 4.3 MEDIUM EPSS 0.00
OpenStack Image Service - Privilege Escalation
OpenStack Image Service (Glance) before 2015.1.3 (kilo) and 11.0.x before 11.0.2 (liberty), when show_multiple_locations is enabled, allow remote authenticated users to change image status and upload new image data by removing the last location of an image.
CWE-284 Apr 13, 2016
CVE-2016-0739 5.9 MEDIUM EPSS 0.04
libssh <0.7.3 - Info Disclosure
libssh before 0.7.3 improperly truncates ephemeral secrets generated for the (1) diffie-hellman-group1 and (2) diffie-hellman-group14 key exchange methods to 128 bits, which makes it easier for man-in-the-middle attackers to decrypt or intercept SSH sessions via unspecified vectors, aka a "bits/bytes confusion bug."
CWE-200 Apr 13, 2016
CVE-2015-8784 6.5 MEDIUM EPSS 0.02
Libtiff < 4.0.7 - Out-of-Bounds Write
The NeXTDecode function in tif_next.c in LibTIFF allows remote attackers to cause a denial of service (out-of-bounds write) via a crafted TIFF image, as demonstrated by libtiff5.tif.
CWE-787 Apr 13, 2016
CVE-2015-8683 5.5 MEDIUM EPSS 0.00
Libtiff - Memory Corruption
The putcontig8bitCIELab function in tif_getimage.c in LibTIFF 4.0.6 allows remote attackers to cause a denial of service (out-of-bounds read) via a packed TIFF image.
CWE-119 Apr 13, 2016
CVE-2015-8665 5.5 MEDIUM EPSS 0.00
Libtiff - Memory Corruption
tif_getimage.c in LibTIFF 4.0.6 allows remote attackers to cause a denial of service (out-of-bounds read) via the SamplesPerPixel tag in a TIFF image.
CWE-119 Apr 13, 2016
CVE-2015-1547 6.5 MEDIUM EPSS 0.04
LibTIFF - DoS
The NeXTDecode function in tif_next.c in LibTIFF allows remote attackers to cause a denial of service (uninitialized memory access) via a crafted TIFF image, as demonstrated by libtiff5.tif.
CWE-119 Apr 13, 2016
CVE-2014-9655 6.5 MEDIUM EPSS 0.01
LibTIFF - DoS
The (1) putcontig8bitYCbCr21tile function in tif_getimage.c or (2) NeXTDecode function in tif_next.c in LibTIFF allows remote attackers to cause a denial of service (uninitialized memory access) via a crafted TIFF image, as demonstrated by libtiff-cvs-1.tif and libtiff-cvs-2.tif.
CWE-119 Apr 13, 2016
CVE-2016-3686 5.9 MEDIUM EPSS 0.00
F5 BIG-IP APM <11.6.0 HF6 & Edge Gateway <11.3.0 - Info Disclosure
The Single Sign-On (SSO) feature in F5 BIG-IP APM 11.x before 11.6.0 HF6 and BIG-IP Edge Gateway 11.0.0 through 11.3.0 might allow remote attackers to obtain sensitive SessionId information by leveraging access to the Location HTTP header in a redirect.
CWE-200 Apr 13, 2016
CVE-2016-2533 6.5 MEDIUM EPSS 0.01
Python Pillow < 3.1.0 - Memory Corruption
Buffer overflow in the ImagingPcdDecode function in PcdDecode.c in Pillow before 3.1.1 and Python Imaging Library (PIL) 1.1.7 and earlier allows remote attackers to cause a denial of service (crash) via a crafted PhotoCD file.
CWE-119 Apr 13, 2016
CVE-2016-2228 6.1 MEDIUM 1 Writeup EPSS 0.01
Debian Linux < 5.2.11 - XSS
Cross-site scripting (XSS) vulnerability in horde/templates/topbar/_menubar.html.php in Horde Groupware before 5.2.12 and Horde Groupware Webmail Edition before 5.2.12 allows remote attackers to inject arbitrary web script or HTML via the searchfield parameter, as demonstrated by a request to xplorer/gollem/manager.php.
CWE-79 Apr 13, 2016
CVE-2016-2191 6.5 MEDIUM EPSS 0.02
Optipng - Memory Corruption
The bmp_read_rows function in pngxtern/pngxrbmp.c in OptiPNG before 0.7.6 allows remote attackers to cause a denial of service (invalid memory write and crash) via a series of delta escapes in a crafted BMP image.
CWE-119 Apr 13, 2016
CVE-2016-2058 5.4 MEDIUM EPSS 0.00
Xymon <4.3.25 - XSS
Multiple cross-site scripting (XSS) vulnerabilities in Xymon 4.1.x, 4.2.x, and 4.3.x before 4.3.25 allow (1) remote Xymon clients to inject arbitrary web script or HTML via a status-message, which is not properly handled in the "detailed status" page, or (2) remote authenticated users to inject arbitrary web script or HTML via an acknowledgement message, which is not properly handled in the "status" page.
CWE-79 Apr 13, 2016
CVE-2016-0775 6.5 MEDIUM EPSS 0.01
Pillow <3.1.1 - Buffer Overflow
Buffer overflow in the ImagingFliDecode function in libImaging/FliDecode.c in Pillow before 3.1.1 allows remote attackers to cause a denial of service (crash) via a crafted FLI file.
CWE-119 Apr 13, 2016
CVE-2016-0740 6.5 MEDIUM EPSS 0.00
Pillow <3.1.1 - Buffer Overflow
Buffer overflow in the ImagingLibTiffDecode function in libImaging/TiffDecode.c in Pillow before 3.1.1 allows remote attackers to overwrite memory via a crafted TIFF file.
CWE-119 Apr 13, 2016
CVE-2015-8807 6.1 MEDIUM 1 Writeup EPSS 0.01
Fedora - XSS
Cross-site scripting (XSS) vulnerability in the _renderVarInput_number function in horde/framework/Core/lib/Horde/Core/Ui/VarRenderer/Html.php in Horde Groupware before 5.2.12 and Horde Groupware Webmail Edition before 5.2.12 allows remote attackers to inject arbitrary web script or HTML via vectors involving numeric form fields.
CWE-79 Apr 13, 2016
CVE-2015-8606 6.1 MEDIUM EPSS 0.00
SilverStripe CMS & Framework <3.1.16, <3.2.1 - XSS
Multiple cross-site scripting (XSS) vulnerabilities in SilverStripe CMS & Framework before 3.1.16 and 3.2.x before 3.2.1 allow remote attackers to inject arbitrary web script or HTML via the (1) Locale or (2) FailedLoginCount parameter to admin/security/EditForm/field/Members/item/new/ItemEditForm.
CWE-79 Apr 13, 2016
CVE-2015-8553 6.5 MEDIUM EPSS 0.00
Xen - Info Disclosure
Xen allows guest OS users to obtain sensitive information from uninitialized locations in host OS kernel memory by not enabling memory and I/O decoding control bits. NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-0777.
CWE-200 Apr 13, 2016
CVE-2015-8552 4.4 MEDIUM EPSS 0.00
Xen <4.3.x - DoS
The PCI backend driver in Xen, when running on an x86 system and using Linux 3.1.x through 4.3.x as the driver domain, allows local guest administrators to generate a continuous stream of WARN messages and cause a denial of service (disk consumption) by leveraging a system with access to a passed-through MSI or MSI-X capable physical PCI device and XEN_PCI_OP_enable_msi operations, aka "Linux pciback missing sanity checks."
CWE-20 Apr 13, 2016