Exploit Intelligence Platform

Updated 5m ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

346,363 CVEs tracked 53,626 with exploits 4,858 exploited in wild 1,583 CISA KEV 4,077 Nuclei templates 52,288 vendors 43,844 researchers
285 results Clear all
CVE-2015-8309 4.3 MEDIUM 1 PoC Analysis EPSS 0.07
Cherry Music <0.36.0 - Path Traversal
Directory traversal vulnerability in Cherry Music before 0.36.0 allows remote authenticated users to read arbitrary files via the "value" parameter to "download."
CWE-22 Mar 27, 2017
CVE-2015-5285 1 PoC Analysis EPSS 0.05
Kallithea <0.3 - HTTP Response Splitting
CRLF injection vulnerability in Kallithea before 0.3 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the came_from parameter to _admin/login.
Oct 29, 2015
CVE-2015-7293 8.8 HIGH 1 PoC Analysis EPSS 0.00
Plone < 4.3.7 - CSRF
Multiple cross-site request forgery (CSRF) vulnerabilities in Zope Management Interface 4.3.7 and earlier, and Plone before 5.x.
CWE-352 Sep 25, 2017
CVE-2014-9390 9.8 CRITICAL 2 PoCs Analysis EPSS 0.77
Malicious Git and Mercurial HTTP Server For CVE-2014-9390
Git before 1.8.5.6, 1.9.x before 1.9.5, 2.0.x before 2.0.5, 2.1.x before 2.1.4, and 2.2.x before 2.2.1 on Windows and OS X; Mercurial before 3.2.3 on Windows and OS X; Apple Xcode before 6.2 beta 3; mine all versions before 08-12-2014; libgit2 all versions up to 0.21.2; Egit all versions before 08-12-2014; and JGit all versions before 08-12-2014 allow remote Git servers to execute arbitrary commands via a tree containing a crafted .git/config file with (1) an ignorable Unicode codepoint, (2) a git~1/config representation, or (3) mixed case that is improperly handled on a case-insensitive filesystem.
CWE-20 Feb 12, 2020
CVE-2014-0472 1 PoC Analysis EPSS 0.07
Django <1.4.11, <1.5.6, <1.6.3, <1.7 beta 2 - RCE
The django.core.urlresolvers.reverse function in Django before 1.4.11, 1.5.x before 1.5.6, 1.6.x before 1.6.3, and 1.7.x before 1.7 beta 2 allows remote attackers to import and execute arbitrary Python modules by leveraging a view that constructs URLs using user input and a "dotted Python path."
CWE-94 Apr 23, 2014
CVE-2014-3840 1 PoC Analysis EPSS 0.01
Mayan-edms Mayan Edms - XSS
Multiple cross-site scripting (XSS) vulnerabilities in apps/common/templates/calculate_form_title.html in Mayan EDMS 0.13 allow remote authenticated users to inject arbitrary web script or HTML via a (1) tag or the (2) title of a source in a Staging folder, (3) Name field in a bootstrap setup, or Title field in a (4) smart link or (5) web form.
CWE-79 May 27, 2014
CVE-2014-3225 1 PoC Analysis EPSS 0.06
Cobbler < 2.6.4 - Path Traversal
Absolute path traversal vulnerability in the web interface in Cobbler 2.4.x through 2.6.x allows remote authenticated users to read arbitrary files via the Kickstart field in a profile.
CWE-22 May 14, 2014
CVE-2014-3146 6.1 MEDIUM 1 PoC Analysis EPSS 0.04
Lxml < 3.3.4 - XSS
Incomplete blacklist vulnerability in the lxml.html.clean module in lxml before 3.3.5 allows remote attackers to conduct cross-site scripting (XSS) attacks via control characters in the link scheme to the clean_html function.
CWE-79 May 14, 2014
CVE-2013-5093 2 PoCs Analysis EPSS 0.84
Graphite <0.9.10 - RCE
The renderLocalView function in render/views.py in graphite-web in Graphite 0.9.5 through 0.9.10 uses the pickle Python module unsafely, which allows remote attackers to execute arbitrary code via a crafted serialized object.
CWE-94 Sep 27, 2013
CVE-2013-2006 1 PoC Analysis EPSS 0.00
Openstack Keystone < 8.0.0a0 - Information Disclosure
OpenStack Identity (Keystone) Grizzly 2013.1.1, when DEBUG mode logging is enabled, logs the (1) admin_token and (2) LDAP password in plaintext, which allows local users to obtain sensitive by reading the log file.
CWE-200 May 21, 2013
CVE-2013-0212 1 PoC Analysis EPSS 0.01
Openstack Image Registry And Delivery... - Information Disclosure
store/swift.py in OpenStack Glance Essex (2012.1), Folsom (2012.2) before 2012.2.3, and Grizzly, when in Swift single tenant mode, logs the Swift endpoint's user name and password in cleartext when the endpoint is misconfigured or unusable, allows remote authenticated users to obtain sensitive information by reading the error messages.
CWE-200 Feb 24, 2013
CVE-2013-2217 1 PoC Analysis EPSS 0.00
Jeff Ortel Suds < 1.0.0 - Symlink Following
cache.py in Suds 0.4, when tempdir is set to None, allows local users to redirect SOAP queries and possibly have other unspecified impact via a symlink attack on a cache file with a predictable name in /tmp/suds/.
CWE-59 Sep 23, 2013
CVE-2013-6480 1 PoC Analysis EPSS 0.01
Apache Libcloud < 0.13.3 - Information Disclosure
Libcloud 0.12.3 through 0.13.2 does not set the scrub_data parameter for the destroy DigitalOcean API, which allows local users to obtain sensitive information by leveraging a new VM.
CWE-200 Jan 07, 2014
CVE-2013-4200 1 PoC Analysis EPSS 0.05
Plone < 4.1.1 - Access Control
The isURLInPortal method in the URLTool class in in_portal.py in Plone 2.1 through 4.1, 4.2.x through 4.2.5, and 4.3.x through 4.3.1 treats URLs starting with a space as a relative URL, which allows remote attackers to bypass the allow_external_login_sites filtering property, redirect users to arbitrary web sites, and conduct phishing attacks via a space before a URL in the "next" parameter to acl_users/credentials_cookie_auth/require_login.
CWE-264 Jan 21, 2014
CVE-2013-5123 5.9 MEDIUM 1 PoC Analysis EPSS 0.12
Python Pip <1.5 - SSRF
The mirroring support (-M, --use-mirrors) in Python Pip before 1.5 uses insecure DNS querying and authenticity checks which allows attackers to perform man-in-the-middle attacks.
CWE-287 Nov 05, 2019
CVE-2012-6081 EXPLOITED 3 PoCs Analysis EPSS 0.74
Moinmoin < 1.9.5 - Unrestricted File Upload
Multiple unrestricted file upload vulnerabilities in the (1) twikidraw (action/twikidraw.py) and (2) anywikidraw (action/anywikidraw.py) actions in MoinMoin before 1.9.6 allow remote authenticated users with write permissions to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in an unspecified directory, as exploited in the wild in July 2012.
Jan 03, 2013
CVE-2012-6495 2 PoCs Analysis EPSS 0.10
Moinmoin < 1.9.5 - Path Traversal
Multiple directory traversal vulnerabilities in the (1) twikidraw (action/twikidraw.py) and (2) anywikidraw (action/anywikidraw.py) actions in MoinMoin before 1.9.6 allow remote authenticated users with write permissions to overwrite arbitrary files via unspecified vectors. NOTE: this can be leveraged with CVE-2012-6081 to execute arbitrary code.
CWE-22 Jan 03, 2013
CVE-2011-3587 EXPLOITED 2 PoCs Analysis EPSS 0.90
Zope <2.13.x - RCE
Unspecified vulnerability in Zope 2.12.x and 2.13.x, as used in Plone 4.0.x through 4.0.9, 4.1, and 4.2 through 4.2a2, allows remote attackers to execute arbitrary commands via vectors related to the p_ class in OFS/misc_.py and the use of Python modules.
Oct 10, 2011
CVE-2009-5065 1 PoC Analysis EPSS 0.07
Mark Pilgrim Feedparser < 4.1 - XSS
Cross-site scripting (XSS) vulnerability in feedparser.py in Universal Feed Parser (aka feedparser or python-feedparser) before 5.0 allows remote attackers to inject arbitrary web script or HTML via vectors involving nested CDATA stanzas.
CWE-79 Apr 11, 2011
CVE-2009-0260 1 PoC Analysis EPSS 0.03
MoinMoin <1.8.1 - XSS
Multiple cross-site scripting (XSS) vulnerabilities in action/AttachFile.py in MoinMoin before 1.8.1 allow remote attackers to inject arbitrary web script or HTML via an AttachFile action to the WikiSandBox component with (1) the rename parameter or (2) the drawing parameter (aka the basename variable).
CWE-79 Jan 23, 2009