CVE & Exploit Intelligence Database

Updated 2h ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

338,223 CVEs tracked 53,274 with exploits 4,730 exploited in wild 1,542 CISA KEV 3,929 Nuclei templates 37,826 vendors 42,563 researchers
110,849 results Clear all
CVE-2016-3168 6.4 MEDIUM EPSS 0.01
Drupal < 6.38 - Security Feature Bypass
The System module in Drupal 6.x before 6.38 and 7.x before 7.43 might allow remote attackers to hijack the authentication of site administrators for requests that download and run files with arbitrary JSON-encoded content, aka a "reflected file download vulnerability."
CWE-254 Apr 12, 2016
CVE-2016-3166 5.9 MEDIUM EPSS 0.00
Drupal 6.x <6.38 - CRLF Injection
CRLF injection vulnerability in the drupal_set_header function in Drupal 6.x before 6.38, when used with PHP before 5.1.2, allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks by leveraging a module that allows user-submitted data to appear in HTTP headers.
Apr 12, 2016
CVE-2016-2166 6.5 MEDIUM EPSS 0.00
Apache Qpid Proton < 0.12.0 - Information Disclosure
The (1) proton.reactor.Connector, (2) proton.reactor.Container, and (3) proton.utils.BlockingConnection classes in Apache Qpid Proton before 0.12.1 improperly use an unencrypted connection for an amqps URI scheme when SSL support is unavailable, which might allow man-in-the-middle attackers to obtain sensitive information or modify data via unspecified vectors.
CWE-200 Apr 12, 2016
CVE-2016-2140 5.3 MEDIUM EPSS 0.01
Openstack Nova < 12.0.3 - Information Disclosure
The libvirt driver in OpenStack Compute (Nova) before 2015.1.4 (kilo) and 12.0.x before 12.0.3 (liberty), when using raw storage and use_cow_images is set to false, allows remote authenticated users to read arbitrary files via a crafted qcow2 header in an ephemeral or root disk.
CWE-200 Apr 12, 2016
CVE-2015-8537 5.3 MEDIUM EPSS 0.00
Redmine <2.6.9, <3.0.7, <3.1.3 - Info Disclosure
app/views/journals/index.builder in Redmine before 2.6.9, 3.0.x before 3.0.7, and 3.1.x before 3.1.3 allows remote attackers to obtain sensitive information by viewing an Atom feed.
CWE-200 Apr 12, 2016
CVE-2015-8473 4.3 MEDIUM EPSS 0.00
Redmine <2.6.8, <3.0.6, <3.1.2 - Info Disclosure
The Issues API in Redmine before 2.6.8, 3.0.x before 3.0.6, and 3.1.x before 3.1.2 allows remote authenticated users to obtain sensitive information in changeset messages by leveraging permission to read issues with related changesets from other projects.
CWE-200 Apr 12, 2016
CVE-2015-8346 5.3 MEDIUM EPSS 0.00
Redmine <2.6.8, <3.0.6, <3.1.2 - Info Disclosure
app/views/timelog/_form.html.erb in Redmine before 2.6.8, 3.0.x before 3.0.6, and 3.1.x before 3.1.2 allows remote attackers to obtain sensitive information about subjects of issues by viewing the time logging form.
CWE-199 Apr 12, 2016
CVE-2015-8021 4.3 MEDIUM EPSS 0.00
F5 BIG-IP <11.2.1 HF11, 11.3.x, 11.4.0 - Auth Bypass
Incomplete blacklist vulnerability in the Configuration utility in F5 BIG-IP LTM, Analytics, APM, ASM, GTM, Link Controller, and PSM 11.x before 11.2.1 HF11, 11.3.x, 11.4.0 before HF8, and 11.4.1 before HF6; BIG-IP AAM 11.4.0 before HF8 and 11.4.1 before HF6; BIG-IP AFM and PEM 11.3.x, 11.4.0 before HF8, and 11.4.1 before HF6; and BIG-IP Edge Gateway, WebAccelerator, and WOM 11.x before 11.2.1 HF11 and 11.3.0 allows remote authenticated users to upload files via uploadImage.php.
CWE-284 Apr 12, 2016
CVE-2015-5167 6.5 MEDIUM EPSS 0.00
Apache Ranger < 0.5.0 - Access Control
The Policy Admin Tool in Apache Ranger before 0.5.1 allows remote authenticated users to bypass intended access restrictions via the REST API.
CWE-264 Apr 12, 2016
CVE-2015-3268 6.1 MEDIUM EPSS 0.08
Apache OFBiz <13.07.03 - XSS
Cross-site scripting (XSS) vulnerability in the DisplayEntityField.getDescription method in ModelFormField.java in Apache OFBiz before 12.04.06 and 13.07.x before 13.07.03 allows remote attackers to inject arbitrary web script or HTML via the description attribute of a display-entity element.
CWE-79 Apr 12, 2016
CVE-2016-3985 6.5 MEDIUM EPSS 0.00
Pulse Connect Secure <8.2R1 - Auth Bypass
The Terminal Services Remote Desktop Protocol (RDP) client session restrictions feature in Pulse Connect Secure (aka PCS) 8.1R7 and 8.2R1 allow remote authenticated users to bypass intended access restrictions via unspecified vectors.
CWE-284 Apr 12, 2016
CVE-2016-1885 6.2 MEDIUM 1 PoC Analysis EPSS 0.00
FreeBSD <9.3p39, 10.1p31, 10.2p14 - DoS
Integer signedness error in the amd64_set_ldt function in sys/amd64/amd64/sys_machdep.c in FreeBSD 9.3 before p39, 10.1 before p31, and 10.2 before p14 allows local users to cause a denial of service (kernel panic) via an i386_set_ldt system call, which triggers a heap-based buffer overflow.
CWE-119 Apr 12, 2016
CVE-2015-8108 5.3 MEDIUM EPSS 0.00
LenovoEMC EZ Media & Backup - Info Disclosure
The management interface in LenovoEMC EZ Media & Backup (hm3), ix2/ix2-dl, ix4-300d, px12-400r/450r, px6-300d, px2-300d, px4-300r, px4-400d, px4-400r, and px4-300d NAS devices with firmware before 4.1.204.33661 allows remote attackers to obtain sensitive device information via unspecified vectors.
CWE-254 Apr 12, 2016
CVE-2015-5158 5.5 MEDIUM EPSS 0.00
Qemu < 2.4.0 - Out-of-Bounds Write
Stack-based buffer overflow in hw/scsi/scsi-bus.c in QEMU, when built with SCSI-device emulation support, allows guest OS users with CAP_SYS_RAWIO permissions to cause a denial of service (instance crash) via an invalid opcode in a SCSI command descriptor block.
CWE-787 Apr 12, 2016
CVE-2015-8399 4.3 MEDIUM 1 PoC Analysis NUCLEI EPSS 0.93
Atlassian Confluence <5.8.17 - Info Disclosure
Atlassian Confluence before 5.8.17 allows remote authenticated users to read configuration files via the decoratorName parameter to (1) spaces/viewdefaultdecorator.action or (2) admin/viewdefaultdecorator.action.
CWE-200 Apr 11, 2016
CVE-2015-8398 6.1 MEDIUM 1 PoC Analysis EPSS 0.01
Atlassian Confluence <5.8.17 - XSS
Cross-site scripting (XSS) vulnerability in Atlassian Confluence before 5.8.17 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to rest/prototype/1/session/check.
CWE-79 Apr 11, 2016
CVE-2015-7528 5.3 MEDIUM EPSS 0.00
Kubernetes <1.2.0-alpha.5 - Info Disclosure
Kubernetes before 1.2.0-alpha.5 allows remote attackers to read arbitrary pod logs via a container name.
CWE-200 Apr 11, 2016
CVE-2015-7502 5.1 MEDIUM EPSS 0.00
Red Hat CloudForms <5.4.4-5.5.0 - Info Disclosure
Red Hat CloudForms 3.2 Management Engine (CFME) 5.4.4 and CloudForms 4.0 Management Engine (CFME) 5.5.0 do not properly encrypt data in the backend PostgreSQL database, which might allow local users to obtain sensitive data and consequently gain privileges by leveraging access to (1) database exports or (2) log files.
CWE-200 Apr 11, 2016
CVE-2015-5233 4.2 MEDIUM EPSS 0.00
Foreman <1.8.4, <1.9.1 - Privilege Escalation
Foreman before 1.8.4 and 1.9.x before 1.9.1 do not properly apply view_hosts permissions, which allows (1) remote authenticated users with the view_reports permission to read reports from arbitrary hosts or (2) remote authenticated users with the destroy_reports permission to delete reports from arbitrary hosts via direct access to the (a) individual report show/delete pages or (b) APIs.
CWE-264 Apr 11, 2016
CVE-2014-9759 5.3 MEDIUM EPSS 0.00
MantisBT <1.3.0 - Info Disclosure
Incomplete blacklist vulnerability in the config_is_private function in config_api.php in MantisBT 1.3.x before 1.3.0 allows remote attackers to obtain sensitive master salt configuration information via a SOAP API request.
CWE-200 Apr 11, 2016