Exploit Intelligence Platform

Updated 4h ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

339,490 CVEs tracked 53,352 with exploits 4,748 exploited in wild 1,551 CISA KEV 3,945 Nuclei templates 49,201 vendors 42,812 researchers
111,542 results Clear all
CVE-2005-0369 5.3 MEDIUM 1 PoC Analysis EPSS 0.07
Armagetron < 0.2.6.0 - Improper Array Index Validation
Armagetron 0.2.6.0 and earlier and Armagetron Advanced 0.2.7.0 earlier allows remote attackers to cause a denial of service (application crash) via a packet with a large (1) descriptor ID or (2) claim_id, which exceeds the boundaries of an array.
CWE-129 May 02, 2005
CVE-2005-0824 5.5 MEDIUM EPSS 0.00
Mathopd < 1.5 - Symlink Following
The internal_dump function in Mathopd before 1.5p5, and 1.6x before 1.6b6 BETA, when Mathopd is running with the -n option, allows local users to overwrite arbitrary files via a symlink attack on dump files that are triggered by a SIGWINCH signal.
CWE-59 May 02, 2005
CVE-2005-0587 6.5 MEDIUM EPSS 0.01
Mozilla Firefox < 1.0.1 - Symlink Following
Firefox before 1.0.1 and Mozilla before 1.7.6 allows remote malicious web sites to overwrite arbitrary files by tricking the user into downloading a .LNK (link) file twice, which overwrites the file that was referenced in the first .LNK file.
CWE-59 Mar 25, 2005
CVE-2005-0109 5.6 MEDIUM EPSS 0.00
Intel Pentium - Info Disclosure
Hyper-Threading technology, as used in FreeBSD and other operating systems that are run on Intel Pentium and other processors, allows local users to use a malicious thread to create covert channels, monitor the execution of other threads, and obtain sensitive information such as cryptographic keys, via a timing attack on memory cache misses.
Mar 05, 2005
CVE-2005-0406 5.5 MEDIUM EPSS 0.00
Image Processing - Information Disclosure
A design flaw in image processing software that modifies JPEG images might not modify the original EXIF thumbnail, which could lead to an information leak of potentially sensitive visual information that had been removed from the main JPEG image.
CWE-212 Feb 14, 2005
CVE-2004-1464 5.9 MEDIUM KEV EPSS 0.02
Cisco Ios < 12.2\(15\)zj3 - Denial of Service
Cisco IOS 12.2(15) and earlier allows remote attackers to cause a denial of service (refused VTY (virtual terminal) connections), via a crafted TCP connection to the Telnet or reverse Telnet port.
CWE-400 Dec 31, 2004
CVE-2004-1995 6.5 MEDIUM 1 PoC Analysis EPSS 0.05
Fusetalk - CSRF
Cross-Site Request Forgery (CSRF) vulnerability in FuseTalk 2.0 allows remote attackers to create arbitrary accounts via a link to adduser.cfm.
CWE-352 Dec 31, 2004
CVE-2004-2257 5.3 MEDIUM EPSS 0.01
phpMyFAQ 1.4.0 - Info Disclosure
phpMyFAQ 1.4.0 allows remote attackers to access the Image Manager to upload or delete images without authorization via a direct request.
CWE-425 Dec 31, 2004
CVE-2004-2331 5.5 MEDIUM EPSS 0.00
ColdFusion MX 6.1-6.1 - Info Disclosure
ColdFusion MX 6.1 and 6.1 J2EE allows local users to bypass sandbox security restrictions and obtain sensitive information by using Java reflection methods to access trusted Java objects without using the CreateObject function or cfobject tag.
CWE-470 Dec 31, 2004
CVE-2004-1901 5.5 MEDIUM EPSS 0.00
Gentoo Portage < 2.0.50 - Symlink Following
Portage before 2.0.50-r3 allows local users to overwrite arbitrary files via a hard link attack on the lockfiles.
CWE-59 Dec 31, 2004
CVE-2004-0342 5.5 MEDIUM EPSS 0.00
WFTPD Pro Server 3.21 Release 1 - DoS
WFTPD Pro Server 3.21 Release 1, with the XeroxDocutech option enabled, allows local users to cause a denial of service (crash) via a (1) MKD or (2) XMKD command that causes an absolute path of 260 characters to be used, which overwrites a cookie with a null character, possibly due to an off-by-one error.
CWE-193 Nov 23, 2004
CVE-2004-1603 5.5 MEDIUM EPSS 0.00
Cpanel - Symlink Following
cPanel 9.4.1-RELEASE-64 follows hard links, which allows local users to (1) read arbitrary files via the backup feature or (2) chown arbitrary files via the .htaccess file when Front Page extensions are enabled or disabled.
CWE-59 Oct 18, 2004
CVE-2004-1865 4.8 MEDIUM EPSS 0.00
Bblog - XSS
Cross-site scripting (XSS) vulnerability in the administration panel in bBlog 0.7.2 allows remote authenticated users with superuser privileges to inject arbitrary web script or HTML via a blog name ($blogname). NOTE: if administrators are normally allowed to add HTML by other means, e.g. through Smarty templates, then this issue would not give any additional privileges, and thus would not be considered a vulnerability.
CWE-79 Mar 26, 2004
CVE-2003-0981 6.1 MEDIUM EPSS 0.00
Freescripts Visitorbook LE - Origin Validation Error
FreeScripts VisitorBook LE (visitorbook.pl) logs the reverse DNS name of a visiting host, which allows remote attackers to spoof the origin of their incoming requests and facilitate cross-site scripting (XSS) attacks.
CWE-346 Jan 05, 2004
CVE-2003-1564 6.5 MEDIUM EPSS 0.01
Xmlsoft Libxml2 < 2.5.0 - XML Entity Expansion
libxml2, possibly before 2.5.0, does not properly detect recursion during entity expansion, which allows context-dependent attackers to cause a denial of service (memory and CPU consumption) via a crafted XML document containing a large number of nested entity references, aka the "billion laughs attack."
CWE-776 Dec 31, 2003
CVE-2003-0517 5.5 MEDIUM EPSS 0.00
mgetty <1.1.28 - Local File Overwrite
faxrunqd.in in mgetty 1.1.28 and earlier allows local users to overwrite files via a symlink attack on JOB files.
CWE-59 Aug 18, 2003
CVE-2002-1682 5.5 MEDIUM EPSS 0.00
Daansystems Newsreactor - Weak Encryption
NewsReactor 1.0 uses a weak encryption scheme, which could allow local users to decrypt the passwords and gain access to other users' newsgroup accounts.
CWE-326 Dec 31, 2002
CVE-2002-1696 5.5 MEDIUM EPSS 0.00
PGP Personal Privacy - Cleartext Storage
Microsoft Outlook plug-in PGP version 7.0, 7.0.3, and 7.0.4 silently saves a decrypted copy of a message to hard disk when "Automatically decrypt/verify when opening messages" option is checked, "Always use Secure Viewer when decrypting" option is not checked, and the user replies to an encrypted message.
CWE-312 Dec 31, 2002
CVE-2002-1914 5.5 MEDIUM EPSS 0.00
Dump - Improper Locking
dump 0.4 b10 through b29 allows local users to cause a denial of service (execution prevention) by using flock() to lock the /etc/dumpdates file.
CWE-667 Dec 31, 2002
CVE-2002-1975 5.5 MEDIUM EPSS 0.00
Sharp Zaurus Sl-5000d Firmware - Weak Encryption
Sharp Zaurus PDA SL-5000D and SL-5500 uses a salt of "A0" to encrypt the screen-locking password as stored in the Security.conf file, which makes it easier for local users to guess the password via brute force methods.
CWE-326 Dec 31, 2002