CVE & Exploit Intelligence Database

Updated 4h ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

338,223 CVEs tracked 53,271 with exploits 4,730 exploited in wild 1,542 CISA KEV 3,929 Nuclei templates 37,826 vendors 42,547 researchers
110,849 results Clear all
CVE-2012-5821 5.9 MEDIUM EPSS 0.00
Lynx - Improper Certificate Validation
Lynx does not verify that the server's certificate is signed by a trusted certification authority, which allows man-in-the-middle attackers to spoof SSL servers via a crafted certificate, related to improper use of a certain GnuTLS function.
CWE-295 Nov 04, 2012
CVE-2012-5810 5.9 MEDIUM EPSS 0.00
Jpmorganchase Chase Mobile - Improper Certificate Validation
The Chase mobile banking application for Android does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate, related to overriding the default X509TrustManager. NOTE: this vulnerability was fixed in the summer of 2012, but the version number was not changed or is not known.
CWE-295 Nov 04, 2012
CVE-2012-3446 5.9 MEDIUM EPSS 0.00
Apache Libcloud < 0.11.0 - Improper Certificate Validation
Apache Libcloud before 0.11.1 uses an incorrect regular expression during verification of whether the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via a crafted certificate.
CWE-295 Nov 04, 2012
CVE-2012-0518 4.7 MEDIUM KEV EPSS 0.16
Oracle Application Server <10.1.4.3.0 - Open Redirect
Unspecified vulnerability in the Oracle Application Server Single Sign-On component in Oracle Fusion Middleware 10.1.4.3.0 allows remote attackers to affect integrity via unknown vectors related to Redirects, a different vulnerability than CVE-2012-3175.
CWE-601 Oct 16, 2012
CVE-2012-5380 6.7 MEDIUM 1 PoC Analysis EPSS 0.00
Ruby 1.9.3-p194 - Privilege Escalation
Untrusted search path vulnerability in the installation functionality in Ruby 1.9.3-p194, when installed in the top-level C:\ directory, might allow local users to gain privileges via a Trojan horse DLL in the C:\Ruby193\bin directory, which may be added to the PATH system environment variable by an administrator, as demonstrated by a Trojan horse wlbsctrl.dll file used by the "IKE and AuthIP IPsec Keying Modules" system service in Windows Vista SP1, Windows Server 2008 SP2, Windows 7 SP1, and Windows 8 Release Preview. NOTE: CVE disputes this issue because the unsafe PATH is established only by a separate administrative action that is not a default part of the Ruby installation
CWE-22 Oct 11, 2012
CVE-2012-3489 6.5 MEDIUM EPSS 0.01
Postgresql < 8.3.20 - XXE
The xml_parse function in the libxml2 support in the core server component in PostgreSQL 8.3 before 8.3.20, 8.4 before 8.4.13, 9.0 before 9.0.9, and 9.1 before 9.1.5 allows remote authenticated users to determine the existence of arbitrary files or URLs, and possibly obtain file or URL content that triggers a parsing error, via an XML value that refers to (1) a DTD or (2) an entity, related to an XML External Entity (aka XXE) issue.
CWE-611 Oct 03, 2012
CVE-2012-3552 5.9 MEDIUM EPSS 0.02
Linux Kernel < 3.0 - Race Condition
Race condition in the IP implementation in the Linux kernel before 3.0 might allow remote attackers to cause a denial of service (slab corruption and system crash) by sending packets to an application that sets socket options during the handling of network traffic.
CWE-362 Oct 03, 2012
CVE-2012-2993 5.9 MEDIUM EPSS 0.15
Microsoft Windows Phone 7 - SSL Man-in-the-Middle
Microsoft Windows Phone 7 does not verify the domain name in the subject's Common Name (CN) field of an X.509 certificate, which allows man-in-the-middle attackers to spoof an SSL server for the (1) POP3, (2) IMAP, or (3) SMTP protocol via an arbitrary valid certificate.
CWE-295 Sep 18, 2012
CVE-2010-5175 4.8 MEDIUM EPSS 0.00
PrivateFirewall 7.0.20.37 - Privilege Escalation
Race condition in PrivateFirewall 7.0.20.37 on Windows XP allows local users to bypass kernel-mode hook handlers, and execute dangerous code that would otherwise be blocked by a handler but not blocked by signature-based malware detection, via certain user-space memory changes during hook-handler execution, aka an argument-switch attack or a KHOBE attack. NOTE: this issue is disputed by some third parties because it is a flaw in a protection mechanism for situations where a crafted program has already begun to execute
CWE-362 Aug 25, 2012
CVE-2010-5164 5.3 MEDIUM EPSS 0.00
Kingsoft Personal Firewall 9 - Race Condition
Race condition in KingSoft Personal Firewall 9 Plus 2009.05.07.70 on Windows XP allows local users to bypass kernel-mode hook handlers, and execute dangerous code that would otherwise be blocked by a handler but not blocked by signature-based malware detection, via certain user-space memory changes during hook-handler execution, aka an argument-switch attack or a KHOBE attack. NOTE: this issue is disputed by some third parties because it is a flaw in a protection mechanism for situations where a crafted program has already begun to execute
CWE-362 Aug 25, 2012
CVE-2010-5160 4.5 MEDIUM EPSS 0.00
ESET Smart Security <4.2.35.3 - Privilege Escalation
Race condition in ESET Smart Security 4.2.35.3 on Windows XP allows local users to bypass kernel-mode hook handlers, and execute dangerous code that would otherwise be blocked by a handler but not blocked by signature-based malware detection, via certain user-space memory changes during hook-handler execution, aka an argument-switch attack or a KHOBE attack. NOTE: this issue is disputed by some third parties because it is a flaw in a protection mechanism for situations where a crafted program has already begun to execute
CWE-362 Aug 25, 2012
CVE-2010-5153 5.3 MEDIUM EPSS 0.00
Avira Premium Security Suite <10.0.0.536 - Privilege Escalation
Race condition in Avira Premium Security Suite 10.0.0.536 on Windows XP allows local users to bypass kernel-mode hook handlers, and execute dangerous code that would otherwise be blocked by a handler but not blocked by signature-based malware detection, via certain user-space memory changes during hook-handler execution, aka an argument-switch attack or a KHOBE attack. NOTE: this issue is disputed by some third parties because it is a flaw in a protection mechanism for situations where a crafted program has already begun to execute
CWE-362 Aug 25, 2012
CVE-2012-1342 5.8 MEDIUM EPSS 0.00
Cisco Carrier Routing System - Incorrect Authorization
Cisco Carrier Routing System (CRS) 3.9, 4.0, and 4.1 allows remote attackers to bypass ACL entries via fragmented packets, aka Bug ID CSCtj10975.
CWE-863 Aug 06, 2012
CVE-2012-1571 6.5 MEDIUM EPSS 0.00
Christos Zoulas File < 5.10 - Memory Corruption
file before 5.11 and libmagic allow remote attackers to cause a denial of service (crash) via a crafted Composite Document File (CDF) file that triggers (1) an out-of-bounds read or (2) an invalid pointer dereference.
CWE-119 Jul 17, 2012
CVE-2012-0037 6.5 MEDIUM EPSS 0.01
Librdf Raptor < 2.0.7 - XXE
Redland Raptor (aka libraptor) before 2.0.7, as used by OpenOffice 3.3 and 3.4 Beta, LibreOffice before 3.4.6 and 3.5.x before 3.5.1, and other products, allows user-assisted remote attackers to read arbitrary files via a crafted XML external entity (XXE) declaration and reference in an RDF document.
CWE-611 Jun 17, 2012
CVE-2012-1872 6.1 MEDIUM EPSS 0.01
Microsoft Internet Explorer - XSS
Cross-site scripting (XSS) vulnerability in Microsoft Internet Explorer 6 through 9 allows remote attackers to inject arbitrary web script or HTML via crafted character sequences with EUC-JP encoding, aka "EUC-JP Character Encoding Vulnerability."
CWE-79 Jun 12, 2012
CVE-2012-1798 6.5 MEDIUM EPSS 0.01
Imagemagick < 6.7.6-3 - Out-of-Bounds Read
The TIFFGetEXIFProperties function in coders/tiff.c in ImageMagick before 6.7.6-3 allows remote attackers to cause a denial of service (out-of-bounds read and crash) via a crafted EXIF IFD in a TIFF image.
CWE-125 Jun 05, 2012
CVE-2012-1186 5.5 MEDIUM EPSS 0.00
Imagemagick < 6.7.5-8 - Infinite Loop
Integer overflow in the SyncImageProfiles function in profile.c in ImageMagick 6.7.5-8 and earlier allows remote attackers to cause a denial of service (infinite loop) via crafted IOP tag offsets in the IFD in an image. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-0248.
CWE-835 Jun 05, 2012
CVE-2012-0260 6.5 MEDIUM EPSS 0.02
ImageMagick <6.7.6-3 - DoS
The JPEGWarningHandler function in coders/jpeg.c in ImageMagick before 6.7.6-3 allows remote attackers to cause a denial of service (memory consumption) via a JPEG image with a crafted sequence of restart markers.
CWE-400 Jun 05, 2012
CVE-2012-0259 6.5 MEDIUM EPSS 0.01
ImageMagick <6.7.6-3 - DoS
The GetEXIFProperty function in magick/property.c in ImageMagick before 6.7.6-3 allows remote attackers to cause a denial of service (crash) via a zero value in the component count of an EXIF XResolution tag in a JPEG file, which triggers an out-of-bounds read.
CWE-125 Jun 05, 2012