Exploit Intelligence Platform

Updated 5m ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

346,363 CVEs tracked 53,626 with exploits 4,858 exploited in wild 1,583 CISA KEV 4,077 Nuclei templates 52,288 vendors 43,844 researchers
410 results Clear all
CVE-2017-2641 9.8 CRITICAL 1 PoC Analysis EPSS 0.02
Moodle < 2.7.19 - SQL Injection
In Moodle 2.x and 3.x, SQL injection can occur via user preferences.
CWE-89 Mar 26, 2017
CVE-2017-6370 5.3 MEDIUM 1 PoC Analysis EPSS 0.00
Typo3 - Cleartext Transmission
TYPO3 7.6.15 sends an http request to an index.php?loginProvider URI in cases with an https Referer, which allows remote attackers to obtain sensitive cleartext information by sniffing the network and reading the userident and username fields.
CWE-319 Mar 17, 2017
CVE-2017-5630 7.5 HIGH 1 PoC Analysis EPSS 0.05
PHP Pear - Injection
PECL in the download utility class in the Installer in PEAR Base System v1.10.1 does not validate file types and filenames after a redirect, which allows remote HTTP servers to overwrite files via crafted responses, as demonstrated by a .htaccess overwrite.
CWE-74 Feb 01, 2017
CVE-2017-5594 7.5 HIGH 1 PoC Analysis EPSS 0.05
Pagekit < 1.0.10 - Password Reset Weakness
An issue was discovered in Pagekit CMS before 1.0.11. In this vulnerability the remote attacker is able to reset the registered user's password, when the debug toolbar is enabled. The password is successfully recovered using this exploit. The SecureLayer7 ID is SL7_PGKT_01.
CWE-640 Jan 25, 2017
CVE-2016-10033 9.8 CRITICAL KEV 32 PoCs Analysis NUCLEI EPSS 0.94
PHPMailer Sendmail Argument Injection
The mailSend function in the isMail transport in PHPMailer before 5.2.18 might allow remote attackers to pass extra parameters to the mail command and consequently execute arbitrary code via a \" (backslash double quote) in a crafted Sender property.
CWE-88 Dec 30, 2016
CVE-2016-5734 9.8 CRITICAL EXPLOITED 5 PoCs Analysis EPSS 0.87
phpMyAdmin <4.0.10.16, <4.4.15.7, <4.6.3 - RCE
phpMyAdmin 4.0.x before 4.0.10.16, 4.4.x before 4.4.15.7, and 4.6.x before 4.6.3 does not properly choose delimiters to prevent use of the preg_replace e (aka eval) modifier, which might allow remote attackers to execute arbitrary PHP code via a crafted string, as demonstrated by the table search-and-replace implementation.
CWE-94 Jul 03, 2016
CVE-2016-10735 6.1 MEDIUM 1 PoC Analysis EPSS 0.07
Bootstrap < 3.4.0 - XSS
In Bootstrap 3.x before 3.4.0 and 4.x-beta before 4.0.0-beta.2, XSS is possible in the data-target attribute, a different vulnerability than CVE-2018-14041.
CWE-79 Jan 09, 2019
CVE-2016-10034 9.8 CRITICAL 4 PoCs Analysis EPSS 0.82
Zend Mail <2.7.2 - RCE
The setFrom function in the Sendmail adapter in the zend-mail component before 2.4.11, 2.5.x, 2.6.x, and 2.7.x before 2.7.2, and Zend Framework before 2.4.11 might allow remote attackers to pass extra parameters to the mail command and consequently execute arbitrary code via a \" (backslash double quote) in a crafted e-mail address.
CWE-77 Dec 30, 2016
CVE-2016-10074 9.8 CRITICAL 3 PoCs Analysis EPSS 0.76
Swift Mailer <5.4.5 - RCE
The mail transport (aka Swift_Transport_MailTransport) in Swift Mailer before 5.4.5 might allow remote attackers to pass extra parameters to the mail command and consequently execute arbitrary code via a \" (backslash double quote) in a crafted e-mail address in the (1) From, (2) ReturnPath, or (3) Sender header.
CWE-77 Dec 30, 2016
CVE-2016-10045 9.8 CRITICAL 3 PoCs Analysis EPSS 0.93
PHPMailer <5.2.20 - RCE
The isMail transport in PHPMailer before 5.2.20 might allow remote attackers to pass extra parameters to the mail command and consequently execute arbitrary code by leveraging improper interaction between the escapeshellarg function and internal escaping performed in the mail function in PHP. NOTE: this vulnerability exists because of an incorrect fix for CVE-2016-10033.
CWE-77 Dec 30, 2016
CVE-2016-20054 4.3 MEDIUM 1 PoC Analysis EPSS 0.00
Nodcms Cross Site Request Forgery via admin endpoints
Nodcms contains a cross-site request forgery vulnerability that allows attackers to perform unauthorized administrative actions by crafting malicious forms. Attackers can trick authenticated administrators into submitting requests to admin/user_manipulate and admin/settings/generall endpoints to create users or modify application settings without explicit consent.
CWE-352 Apr 04, 2026
CVE-2016-4861 9.8 CRITICAL 1 PoC Analysis EPSS 0.04
Fedora < 1.12.19 - SQL Injection
The (1) order and (2) group methods in Zend_Db_Select in the Zend Framework before 1.12.20 might allow remote attackers to conduct SQL injection attacks by leveraging failure to remove comments from an SQL statement before validation.
CWE-89 Feb 17, 2017
CVE-2016-4793 7.5 HIGH 1 PoC Analysis EPSS 0.08
Cakephp < 3.2.4 - Improper Input Validation
The clientIp function in CakePHP 3.2.4 and earlier allows remote attackers to spoof their IP via the CLIENT-IP HTTP header.
CWE-20 Jan 23, 2017
CVE-2015-6830 1 PoC Analysis EPSS 0.21
Phpmyadmin < 4.3.13.2 - Information Disclosure
libraries/plugins/auth/AuthenticationCookie.class.php in phpMyAdmin 4.3.x before 4.3.13.2 and 4.4.x before 4.4.14.1 allows remote attackers to bypass a multiple-reCaptcha protection mechanism against brute-force credential guessing by providing a correct response to a single reCaptcha.
CWE-200 Sep 14, 2015
CVE-2015-7564 9.8 CRITICAL 1 PoC Analysis EPSS 0.02
TeamPass <2.1.24 - SQL Injection
Multiple SQL injection vulnerabilities in TeamPass 2.1.24 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) id parameter in an action_on_quick_icon action to item.query.php or the (2) order or (3) direction parameter in an (a) connections_logs, (b) errors_logs or (c) access_logs action to view.query.php.
CWE-89 Apr 12, 2017
CVE-2015-7562 6.1 MEDIUM 1 PoC Analysis EPSS 0.01
TeamPass <2.1.24 - XSS
Multiple cross-site scripting (XSS) vulnerabilities in TeamPass 2.1.24 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) label value of an item or (2) name of a role.
CWE-79 Apr 12, 2017
CVE-2015-8566 1 PoC Analysis EPSS 0.01
Joomla! Framework <1.3.1 - RCE
The Session package 1.x before 1.3.1 for Joomla! Framework allows remote attackers to execute arbitrary code via unspecified session values.
Dec 16, 2015
CVE-2015-5161 2 PoCs Analysis EPSS 0.33
Zend Framework < 2.4.6 - XXE
The Zend_Xml_Security::scan in ZendXml before 1.0.1 and Zend Framework before 1.12.14, 2.x before 2.4.6, and 2.5.x before 2.5.2, when running under PHP-FPM in a threaded environment, allows remote attackers to bypass security checks and conduct XML external entity (XXE) and XML entity expansion (XEE) attacks via multibyte encoded characters.
Aug 25, 2015
CVE-2015-1561 1 PoC Analysis EPSS 0.05
Centreon <2.5.4 - Command Injection
The escape_command function in include/Administration/corePerformance/getStats.php in Centreon (formerly Merethis Centreon) 2.5.4 and earlier (fixed in Centreon 19.10.0) uses an incorrect regular expression, which allows remote authenticated users to execute arbitrary commands via shell metacharacters in the ns_id parameter.
CWE-77 Jul 14, 2015
CVE-2015-3933 9.8 CRITICAL 1 PoC Analysis EPSS 0.02
MetalGenix GeniXCMS <0.0.3-patch - SQL Injection
Multiple SQL injection vulnerabilities in inc/lib/User.class.php in MetalGenix GeniXCMS before 0.0.3-patch allow remote attackers to execute arbitrary SQL commands via the (1) email parameter or (2) userid parameter to register.php.
CWE-89 Nov 08, 2017