CVE & Exploit Intelligence Database

Updated 56m ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

337,123 CVEs tracked 53,219 with exploits 4,686 exploited in wild 1,539 CISA KEV 3,912 Nuclei templates 37,757 vendors 42,422 researchers
10 results Clear all
CVE-2022-29851 9.8 CRITICAL EPSS 0.02
Open-xchange OX App Suite < 7.10.6 - OS Command Injection
documentconverter in OX App Suite through 7.10.6, in a non-default configuration with ghostscript, allows OS Command Injection because file conversion may occur for an EPS document that is disguised as a PDF document.
CWE-78 Oct 25, 2022
CVE-2022-24405 9.8 CRITICAL EPSS 0.08
OX App Suite <7.10.6 - Code Injection
OX App Suite through 7.10.6 allows OS Command Injection via a serialized Java class to the Documentconverter API.
CWE-78 Jul 27, 2022
CVE-2022-23100 9.8 CRITICAL EPSS 0.03
Open-xchange OX App Suite < 7.10.6 - OS Command Injection
OX App Suite through 7.10.6 allows OS Command Injection via Documentconverter (e.g., through an email attachment).
CWE-78 Jul 27, 2022
CVE-2020-12645 9.8 CRITICAL EPSS 0.00
OX App Suite 7.10.1-7.10.3 - Info Disclosure
OX App Suite 7.10.1 to 7.10.3 has improper input validation for rate limits with a crafted User-Agent header, spoofed vacation notices, and /apps/load memory consumption.
CWE-307 Aug 31, 2020
CVE-2019-7158 9.8 CRITICAL EPSS 0.01
OX App Suite <7.10.0 - Info Disclosure
OX App Suite 7.10.0 and earlier has Incorrect Access Control.
Jun 17, 2019
CVE-2017-13667 9.9 CRITICAL EPSS 0.00
Open-xchange Appsuite < 7.8.4 - SSRF
OX Software GmbH OX App Suite 7.8.4 and earlier is affected by: SSRF.
CWE-918 May 23, 2019
CVE-2017-5212 9.8 CRITICAL EPSS 0.01
Open-Xchange GmbH OX App Suite 7.8.3 - Info Disclosure
Open-Xchange GmbH OX App Suite 7.8.3 is affected by: Incorrect Access Control.
CWE-284 May 23, 2019
CVE-2017-5210 9.8 CRITICAL EPSS 0.00
Open-Xchange GmbH OX App Suite <7.8.3 - Info Disclosure
Open-Xchange GmbH OX App Suite 7.8.3 and earlier is affected by: Information Exposure.
CWE-200 May 23, 2019
CVE-2017-17060 9.8 CRITICAL EPSS 0.00
OX App Suite <7.8.4 - Info Disclosure
OX Software GmbH OX App Suite 7.8.4 and earlier is affected by: Insecure Permissions.
CWE-275 May 23, 2019
CVE-2017-5863 9.8 CRITICAL EPSS 0.01
Open-xchange Appsuite < 7.8.3 - Improper Access Control
Open-Xchange GmbH OX App Suite 7.8.3 and earlier is affected by: Incorrect Access Control.
CWE-284 May 22, 2019