Exploit Intelligence Platform
Updated 5m agoSearch and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.
410 results
Clear all
CVE-2017-2641
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.02
Moodle < 2.7.19 - SQL Injection
In Moodle 2.x and 3.x, SQL injection can occur via user preferences.
CWE-89
Mar 26, 2017
CVE-2017-6370
5.3
MEDIUM
1 PoC
Analysis
EPSS 0.00
Typo3 - Cleartext Transmission
TYPO3 7.6.15 sends an http request to an index.php?loginProvider URI in cases with an https Referer, which allows remote attackers to obtain sensitive cleartext information by sniffing the network and reading the userident and username fields.
CWE-319
Mar 17, 2017
CVE-2017-5630
7.5
HIGH
1 PoC
Analysis
EPSS 0.05
PHP Pear - Injection
PECL in the download utility class in the Installer in PEAR Base System v1.10.1 does not validate file types and filenames after a redirect, which allows remote HTTP servers to overwrite files via crafted responses, as demonstrated by a .htaccess overwrite.
CWE-74
Feb 01, 2017
CVE-2017-5594
7.5
HIGH
1 PoC
Analysis
EPSS 0.05
Pagekit < 1.0.10 - Password Reset Weakness
An issue was discovered in Pagekit CMS before 1.0.11. In this vulnerability the remote attacker is able to reset the registered user's password, when the debug toolbar is enabled. The password is successfully recovered using this exploit. The SecureLayer7 ID is SL7_PGKT_01.
CWE-640
Jan 25, 2017
CVE-2016-10033
9.8
CRITICAL
KEV
32 PoCs
Analysis
NUCLEI
EPSS 0.94
PHPMailer Sendmail Argument Injection
The mailSend function in the isMail transport in PHPMailer before 5.2.18 might allow remote attackers to pass extra parameters to the mail command and consequently execute arbitrary code via a \" (backslash double quote) in a crafted Sender property.
CWE-88
Dec 30, 2016
CVE-2016-5734
9.8
CRITICAL
EXPLOITED
5 PoCs
Analysis
EPSS 0.87
phpMyAdmin <4.0.10.16, <4.4.15.7, <4.6.3 - RCE
phpMyAdmin 4.0.x before 4.0.10.16, 4.4.x before 4.4.15.7, and 4.6.x before 4.6.3 does not properly choose delimiters to prevent use of the preg_replace e (aka eval) modifier, which might allow remote attackers to execute arbitrary PHP code via a crafted string, as demonstrated by the table search-and-replace implementation.
CWE-94
Jul 03, 2016
CVE-2016-10735
6.1
MEDIUM
1 PoC
Analysis
EPSS 0.07
Bootstrap < 3.4.0 - XSS
In Bootstrap 3.x before 3.4.0 and 4.x-beta before 4.0.0-beta.2, XSS is possible in the data-target attribute, a different vulnerability than CVE-2018-14041.
CWE-79
Jan 09, 2019
CVE-2016-10034
9.8
CRITICAL
4 PoCs
Analysis
EPSS 0.82
Zend Mail <2.7.2 - RCE
The setFrom function in the Sendmail adapter in the zend-mail component before 2.4.11, 2.5.x, 2.6.x, and 2.7.x before 2.7.2, and Zend Framework before 2.4.11 might allow remote attackers to pass extra parameters to the mail command and consequently execute arbitrary code via a \" (backslash double quote) in a crafted e-mail address.
CWE-77
Dec 30, 2016
CVE-2016-10074
9.8
CRITICAL
3 PoCs
Analysis
EPSS 0.76
Swift Mailer <5.4.5 - RCE
The mail transport (aka Swift_Transport_MailTransport) in Swift Mailer before 5.4.5 might allow remote attackers to pass extra parameters to the mail command and consequently execute arbitrary code via a \" (backslash double quote) in a crafted e-mail address in the (1) From, (2) ReturnPath, or (3) Sender header.
CWE-77
Dec 30, 2016
CVE-2016-10045
9.8
CRITICAL
3 PoCs
Analysis
EPSS 0.93
PHPMailer <5.2.20 - RCE
The isMail transport in PHPMailer before 5.2.20 might allow remote attackers to pass extra parameters to the mail command and consequently execute arbitrary code by leveraging improper interaction between the escapeshellarg function and internal escaping performed in the mail function in PHP. NOTE: this vulnerability exists because of an incorrect fix for CVE-2016-10033.
CWE-77
Dec 30, 2016
CVE-2016-20054
4.3
MEDIUM
1 PoC
Analysis
EPSS 0.00
Nodcms Cross Site Request Forgery via admin endpoints
Nodcms contains a cross-site request forgery vulnerability that allows attackers to perform unauthorized administrative actions by crafting malicious forms. Attackers can trick authenticated administrators into submitting requests to admin/user_manipulate and admin/settings/generall endpoints to create users or modify application settings without explicit consent.
CWE-352
Apr 04, 2026
CVE-2016-4861
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.04
Fedora < 1.12.19 - SQL Injection
The (1) order and (2) group methods in Zend_Db_Select in the Zend Framework before 1.12.20 might allow remote attackers to conduct SQL injection attacks by leveraging failure to remove comments from an SQL statement before validation.
CWE-89
Feb 17, 2017
CVE-2016-4793
7.5
HIGH
1 PoC
Analysis
EPSS 0.08
Cakephp < 3.2.4 - Improper Input Validation
The clientIp function in CakePHP 3.2.4 and earlier allows remote attackers to spoof their IP via the CLIENT-IP HTTP header.
CWE-20
Jan 23, 2017
CVE-2015-6830
1 PoC
Analysis
EPSS 0.21
Phpmyadmin < 4.3.13.2 - Information Disclosure
libraries/plugins/auth/AuthenticationCookie.class.php in phpMyAdmin 4.3.x before 4.3.13.2 and 4.4.x before 4.4.14.1 allows remote attackers to bypass a multiple-reCaptcha protection mechanism against brute-force credential guessing by providing a correct response to a single reCaptcha.
CWE-200
Sep 14, 2015
CVE-2015-7564
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.02
TeamPass <2.1.24 - SQL Injection
Multiple SQL injection vulnerabilities in TeamPass 2.1.24 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) id parameter in an action_on_quick_icon action to item.query.php or the (2) order or (3) direction parameter in an (a) connections_logs, (b) errors_logs or (c) access_logs action to view.query.php.
CWE-89
Apr 12, 2017
CVE-2015-7562
6.1
MEDIUM
1 PoC
Analysis
EPSS 0.01
TeamPass <2.1.24 - XSS
Multiple cross-site scripting (XSS) vulnerabilities in TeamPass 2.1.24 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) label value of an item or (2) name of a role.
CWE-79
Apr 12, 2017
CVE-2015-8566
1 PoC
Analysis
EPSS 0.01
Joomla! Framework <1.3.1 - RCE
The Session package 1.x before 1.3.1 for Joomla! Framework allows remote attackers to execute arbitrary code via unspecified session values.
Dec 16, 2015
CVE-2015-5161
2 PoCs
Analysis
EPSS 0.33
Zend Framework < 2.4.6 - XXE
The Zend_Xml_Security::scan in ZendXml before 1.0.1 and Zend Framework before 1.12.14, 2.x before 2.4.6, and 2.5.x before 2.5.2, when running under PHP-FPM in a threaded environment, allows remote attackers to bypass security checks and conduct XML external entity (XXE) and XML entity expansion (XEE) attacks via multibyte encoded characters.
Aug 25, 2015
CVE-2015-1561
1 PoC
Analysis
EPSS 0.05
Centreon <2.5.4 - Command Injection
The escape_command function in include/Administration/corePerformance/getStats.php in Centreon (formerly Merethis Centreon) 2.5.4 and earlier (fixed in Centreon 19.10.0) uses an incorrect regular expression, which allows remote authenticated users to execute arbitrary commands via shell metacharacters in the ns_id parameter.
CWE-77
Jul 14, 2015
CVE-2015-3933
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.02
MetalGenix GeniXCMS <0.0.3-patch - SQL Injection
Multiple SQL injection vulnerabilities in inc/lib/User.class.php in MetalGenix GeniXCMS before 0.0.3-patch allow remote attackers to execute arbitrary SQL commands via the (1) email parameter or (2) userid parameter to register.php.
CWE-89
Nov 08, 2017