CVE & Exploit Intelligence Database

Updated 3h ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

337,123 CVEs tracked 53,219 with exploits 4,686 exploited in wild 1,539 CISA KEV 3,912 Nuclei templates 37,757 vendors 42,422 researchers
9 results Clear all
CVE-2023-24626 6.5 MEDIUM 1 PoC Analysis EPSS 0.00
GNU Screen <4.9.0 - DoS
socket.c in GNU Screen through 4.9.0, when installed setuid or setgid (the default on platforms such as Arch Linux and FreeBSD), allows local users to send a privileged SIGHUP signal to any PID, causing a denial of service or disruption of the target process.
CWE-732 Apr 08, 2023
CVE-2021-26937 9.8 CRITICAL EPSS 0.13
GNU Screen < 4.8.0 - Denial of Service
encoding.c in GNU Screen through 4.8.0 allows remote attackers to cause a denial of service (invalid write access and application crash) or possibly have unspecified other impact via a crafted UTF-8 character sequence.
CWE-88 Feb 09, 2021
CVE-2020-9366 9.8 CRITICAL EPSS 0.01
GNU Screen < 4.8.0 - Out-of-Bounds Write
A buffer overflow was found in the way GNU Screen before 4.8.0 treated the special escape OSC 49. Specially crafted output, or a special program, could corrupt memory and crash Screen or possibly have unspecified other impact.
CWE-787 Feb 24, 2020
CVE-2017-5618 7.8 HIGH 2 PoCs Analysis EPSS 0.03
GNU Screen < 4.5.0 - Incorrect Authorization
GNU screen before 4.5.1 allows local users to modify arbitrary files and consequently gain root privileges by leveraging improper checking of logfile permissions.
CWE-863 Mar 20, 2017
CVE-2009-1214 EPSS 0.00
GNU Screen - Access Control
GNU screen 4.0.3 creates the /tmp/screen-exchange temporary file with world-readable permissions, which might allow local users to obtain sensitive session information.
CWE-264 Apr 01, 2009
CVE-2007-3048 2 PoCs Analysis EPSS 0.00
GNU screen <4.0.3 - Info Disclosure
GNU screen 4.0.3 allows local users to unlock the screen via a CTRL-C sequence at the password prompt. NOTE: multiple third parties report inability to reproduce this issue
Jun 05, 2007
CVE-2006-4573 EPSS 0.01
GNU Screen < 4.0.2 - Denial of Service
Multiple unspecified vulnerabilities in the "utf8 combining characters handling" (utf8_handle_comb function in encoding.c) in screen before 4.0.3 allows user-assisted attackers to cause a denial of service (crash or hang) via certain UTF8 sequences.
Oct 24, 2006
CVE-2003-0972 EPSS 0.01
GNU Screen - Buffer Overflow
Integer signedness error in ansi.c for GNU screen 4.0.1 and earlier, and 3.9.15 and earlier, allows local users to execute arbitrary code via a large number of ";" (semicolon) characters in escape sequences, which leads to a buffer overflow.
Dec 15, 2003
CVE-2002-1602 1 PoC Analysis EPSS 0.00
GNU screen <3.9.11 - RCE
Buffer overflow in the Braille module for GNU screen 3.9.11, when HAVE_BRAILLE is defined, allows local users to execute arbitrary code.
Apr 23, 2002