CVE & Exploit Intelligence Database

Updated 1h ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

337,123 CVEs tracked 53,223 with exploits 4,686 exploited in wild 1,539 CISA KEV 3,912 Nuclei templates 37,757 vendors 42,429 researchers
11 results Clear all
CVE-2008-4541 EPSS 0.16
SUN Java System Web Proxy Server - Memory Corruption
Heap-based buffer overflow in the FTP subsystem in Sun Java System Web Proxy Server 4.0 through 4.0.7 allows remote attackers to execute arbitrary code via a crafted HTTP GET request.
CWE-119 Oct 13, 2008
CVE-2008-3683 EPSS 0.02
Sun Java System Web Proxy Server 4.0-4.0.5 - DoS
Unspecified vulnerability in the FTP subsystem in Sun Java System Web Proxy Server 4.0 through 4.0.5 before SP6 allows remote attackers to cause a denial of service (failure to accept connections) via unknown vectors, probably related to exhaustion of file descriptors.
Aug 14, 2008
CVE-2007-6572 EPSS 0.00
Sun Java System Web Server <7.0 - XSS
Cross-site scripting (XSS) vulnerability in Sun Java System Web Server 6.1 before SP8 and 7.0 before Update 1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka BugID 6566204.
CWE-79 Dec 28, 2007
CVE-2007-6570 EPSS 0.01
Sun Java System Web Proxy Server <4.0.6 & <3.6 - XSS
Cross-site scripting (XSS) vulnerability in the View URL Database functionality in Sun Java System Web Proxy Server 4.x before 4.0.6 and 3.x before 3.6 SP11 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka BugID 6566309.
CWE-79 Dec 28, 2007
CVE-2007-6569 EPSS 0.01
Sun Java System Web Proxy Server <4.0.6 - XSS
Cross-site scripting (XSS) vulnerability in the View Error Log functionality in Sun Java System Web Proxy Server 4.x before 4.0.6 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka BugID 6566246.
CWE-79 Dec 28, 2007
CVE-2007-6571 EPSS 0.00
Sun Java System Web Proxy Server <3.6 - XSS
Cross-site scripting (XSS) vulnerability in Sun Java System Web Proxy Server 3.6 before SP11 on Windows allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka BugID 6611356.
CWE-79 Dec 28, 2007
CVE-2007-2881 EPSS 0.69
Sun Java Web Proxy Server <4.0.5 - Buffer Overflow
Multiple stack-based buffer overflows in the SOCKS proxy support (sockd) in Sun Java Web Proxy Server before 4.0.5 allow remote attackers to execute arbitrary code via crafted packets during protocol negotiation.
May 29, 2007
CVE-2006-6276 EPSS 0.01
Sun Java System Proxy Server <20061130 - SSRF/XSS
HTTP request smuggling vulnerability in Sun Java System Proxy Server before 20061130, when used with Sun Java System Application Server or Sun Java System Web Server, allows remote attackers to bypass HTTP request filtering, hijack web sessions, perform cross-site scripting (XSS), and poison web caches via unspecified attack vectors.
CWE-444 Dec 04, 2006
CVE-2005-4806 EPSS 0.01
Sun Java System Web Proxy Server <3.6 SP7 - DoS
Multiple unspecified vulnerabilities in Sun Java System Web Proxy Server 3.6 SP7 and earlier allow remote attackers to cause a denial of service (unresponsive service) via unknown vectors.
Dec 31, 2005
CVE-2005-1232 EPSS 0.03
Sun Java System Web Proxy Server <3.6 SP6 - RCE
Buffer overflow in Sun Java System Web Proxy Server (aka Sun ONE Proxy Server) 3.6 SP6 allows remote attackers to execute arbitrary code via unknown vectors.
May 02, 2005
CVE-2004-1350 EPSS 0.25
SUN Java System Web Proxy Server - Buffer Overflow
Multiple buffer overflows in Sun Java System Web Proxy Server (formerly Sun ONE Proxy Server) 3.6 through 3.6 SP4 allow remote attackers to execute arbitrary code via unknown vectors, possibly CONNECT requests.
Oct 30, 2004